CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6988 | CVE-2003-0159 | Candidate | Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code. | Assigned (20030321) | None (candidate not yet proposed) | View | |
6989 | CVE-2003-0160 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.2.11 allow remote attackers to inject arbitrary HTML code and steal information from a client"s web browser. | Assigned (20030321) | None (candidate not yet proposed) | View | |
5945 | CVE-2002-1561 | Candidate | The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (disabled RPC service) via a malformed packet to the RPC Endpoint Mapper at TCP port 135, which triggers a null pointer dereference. | Assigned (20030324) | None (candidate not yet proposed) | View | |
6990 | CVE-2003-0161 | Candidate | The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337. | Assigned (20030324) | NOOP(1) Christey | Christey> MANDRAKE:MDKSA-2003:042 | (as suggested by Vincent Danen of Mandrake) | View |
6991 | CVE-2003-0162 | Candidate | Ecartis 1.0.0 (formerly listar) before snapshot 20030227 allows remote attackers to reset passwords of other users and gain privileges by modifying hidden form fields in the HTML page. | Assigned (20030324) | None (candidate not yet proposed) | View |
Page 646 of 20943, showing 5 records out of 104715 total, starting on record 3226, ending on 3230