CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7115  CVE-2003-0287  Candidate  Cross-site scripting (XSS) vulnerability in Movable Type before 2.6, and possibly other versions including 2.63, allows remote attackers to insert arbitrary web script or HTML via the Name textbox, possibly when the "Allow HTML in comments?" option is enabled.  Assigned (20030513)  None (candidate not yet proposed)    View
7116  CVE-2003-0288  Candidate  Buffer overflow in the file & folder transfer mechanism for IP Messenger for Win 2.00 through 2.02 allows remote attackers to execute arbitrary code via file with a long filename, which triggers the overflow when the user saves the file.  Assigned (20030513)  None (candidate not yet proposed)    View
7117  CVE-2003-0289  Candidate  Format string vulnerability in scsiopen.c of the cdrecord program in cdrtools 2.0 allows local users to gain privileges via format string specifiers in the dev parameter.  Assigned (20030513)  None (candidate not yet proposed)    View
7118  CVE-2003-0290  Candidate  Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection is terminated.  Assigned (20030513)  None (candidate not yet proposed)    View
7119  CVE-2003-0291  Candidate  3com OfficeConnect Remote 812 ADSL Router 1.1.7 does not properly clear memory from DHCP responses, which allows remote attackers to identify the contents of previous HTTP requests by sniffing DHCP packets.  Assigned (20030514)  None (candidate not yet proposed)    View

Page 672 of 20943, showing 5 records out of 104715 total, starting on record 3356, ending on 3360

Actions