CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7213  CVE-2003-0386  Candidate  OpenSSH 3.6.1 and earlier, when restricting host access by numeric IP addresses and with VerifyReverseMapping disabled, allows remote attackers to bypass "from=" and "user@host" address restrictions by connecting to a host from a system whose reverse DNS hostname contains the numeric IP address.  Assigned (20030609)  None (candidate not yet proposed)    View
7214  CVE-2003-0387  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030609)  None (candidate not yet proposed)    View
7215  CVE-2003-0388  Candidate  pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to return a spoofed user name.  Assigned (20030609)  None (candidate not yet proposed)    View
7216  CVE-2003-0389  Candidate  Cross-site scripting (XSS) vulnerability in the secure redirect function of RSA ACE/Agent 5.0 for Windows, and 5.x for Web, allows remote attackers to insert arbitrary web script and possibly cause users to enter a passphrase via a GET request containing the script.  Assigned (20030609)  None (candidate not yet proposed)    View
7217  CVE-2003-0390  Candidate  Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi.  Assigned (20030610)  None (candidate not yet proposed)    View

Page 692 of 20943, showing 5 records out of 104715 total, starting on record 3456, ending on 3460

Actions