CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7213 | CVE-2003-0386 | Candidate | OpenSSH 3.6.1 and earlier, when restricting host access by numeric IP addresses and with VerifyReverseMapping disabled, allows remote attackers to bypass "from=" and "user@host" address restrictions by connecting to a host from a system whose reverse DNS hostname contains the numeric IP address. | Assigned (20030609) | None (candidate not yet proposed) | View | |
7214 | CVE-2003-0387 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20030609) | None (candidate not yet proposed) | View | |
7215 | CVE-2003-0388 | Candidate | pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to return a spoofed user name. | Assigned (20030609) | None (candidate not yet proposed) | View | |
7216 | CVE-2003-0389 | Candidate | Cross-site scripting (XSS) vulnerability in the secure redirect function of RSA ACE/Agent 5.0 for Windows, and 5.x for Web, allows remote attackers to insert arbitrary web script and possibly cause users to enter a passphrase via a GET request containing the script. | Assigned (20030609) | None (candidate not yet proposed) | View | |
7217 | CVE-2003-0390 | Candidate | Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi. | Assigned (20030610) | None (candidate not yet proposed) | View |
Page 692 of 20943, showing 5 records out of 104715 total, starting on record 3456, ending on 3460