CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6988  CVE-2003-0159  Candidate  Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.  Assigned (20030321)  None (candidate not yet proposed)    View
6989  CVE-2003-0160  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.2.11 allow remote attackers to inject arbitrary HTML code and steal information from a client"s web browser.  Assigned (20030321)  None (candidate not yet proposed)    View
5945  CVE-2002-1561  Candidate  The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (disabled RPC service) via a malformed packet to the RPC Endpoint Mapper at TCP port 135, which triggers a null pointer dereference.  Assigned (20030324)  None (candidate not yet proposed)    View
6990  CVE-2003-0161  Candidate  The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337.  Assigned (20030324)  NOOP(1) Christey  Christey> MANDRAKE:MDKSA-2003:042 | (as suggested by Vincent Danen of Mandrake)  View
6991  CVE-2003-0162  Candidate  Ecartis 1.0.0 (formerly listar) before snapshot 20030227 allows remote attackers to reset passwords of other users and gain privileges by modifying hidden form fields in the HTML page.  Assigned (20030324)  None (candidate not yet proposed)    View

Page 646 of 20943, showing 5 records out of 104715 total, starting on record 3226, ending on 3230

Actions