CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7253 | CVE-2003-0426 | Candidate | The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote attackers to set the administrator password and gain privileges before the real administrator. | Assigned (20030611) | None (candidate not yet proposed) | View | |
4212 | CVE-2001-1409 | Candidate | dexconf in XFree86 Xserver 4.1.0-2 creates the /dev/dri directory with insecure permissions (666), which allows local users to replace or create files in the root file system. | Assigned (20030611) | None (candidate not yet proposed) | View | |
7329 | CVE-2003-0502 | Candidate | Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) via a .. (dot dot) sequence followed by an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0421. | Assigned (20030611) | None (candidate not yet proposed) | View | |
7254 | CVE-2003-0427 | Candidate | Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename. | Assigned (20030613) | None (candidate not yet proposed) | View | |
7255 | CVE-2003-0428 | Candidate | Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string. | Assigned (20030613) | None (candidate not yet proposed) | View |
Page 700 of 20943, showing 5 records out of 104715 total, starting on record 3496, ending on 3500