CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7180 | CVE-2003-0352 | Candidate | Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms. | Assigned (20030528) | None (candidate not yet proposed) | View | |
7181 | CVE-2003-0353 | Candidate | Buffer overflow in a component of SQL-DMO for Microsoft Data Access Components (MDAC) 2.5 through 2.7 allows remote attackers to execute arbitrary code via a long response to a broadcast request to UDP port 1434. | Assigned (20030528) | None (candidate not yet proposed) | View | |
7182 | CVE-2003-0354 | Candidate | Unknown vulnerability in GNU Ghostscript before 7.07 allows attackers to execute arbitrary commands, even when -dSAFER is enabled, via a PostScript file that causes the commands to be executed from a malicious print job. | Assigned (20030529) | None (candidate not yet proposed) | View | |
7183 | CVE-2003-0355 | Candidate | Safari 1.0 Beta 2 (v73) and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates. | Assigned (20030529) | None (candidate not yet proposed) | View | |
7184 | CVE-2003-0356 | Candidate | Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) AIM, (2) GIOP Gryphon, (3) OSPF, (4) PPTP, (5) Quake, (6) Quake2, (7) Quake3, (8) Rsync, (9) SMB, (10) SMPP, and (11) TSP dissectors, which do not properly use the tvb_get_nstringz and tvb_get_nstringz0 functions. | Assigned (20030529) | None (candidate not yet proposed) | View |
Page 685 of 20943, showing 5 records out of 104715 total, starting on record 3421, ending on 3425