CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7180  CVE-2003-0352  Candidate  Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.  Assigned (20030528)  None (candidate not yet proposed)    View
7181  CVE-2003-0353  Candidate  Buffer overflow in a component of SQL-DMO for Microsoft Data Access Components (MDAC) 2.5 through 2.7 allows remote attackers to execute arbitrary code via a long response to a broadcast request to UDP port 1434.  Assigned (20030528)  None (candidate not yet proposed)    View
7182  CVE-2003-0354  Candidate  Unknown vulnerability in GNU Ghostscript before 7.07 allows attackers to execute arbitrary commands, even when -dSAFER is enabled, via a PostScript file that causes the commands to be executed from a malicious print job.  Assigned (20030529)  None (candidate not yet proposed)    View
7183  CVE-2003-0355  Candidate  Safari 1.0 Beta 2 (v73) and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates.  Assigned (20030529)  None (candidate not yet proposed)    View
7184  CVE-2003-0356  Candidate  Multiple off-by-one vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) AIM, (2) GIOP Gryphon, (3) OSPF, (4) PPTP, (5) Quake, (6) Quake2, (7) Quake3, (8) Rsync, (9) SMB, (10) SMPP, and (11) TSP dissectors, which do not properly use the tvb_get_nstringz and tvb_get_nstringz0 functions.  Assigned (20030529)  None (candidate not yet proposed)    View

Page 685 of 20943, showing 5 records out of 104715 total, starting on record 3421, ending on 3425

Actions