CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7337 | CVE-2003-0510 | Candidate | Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sessions" command. | Assigned (20030703) | None (candidate not yet proposed) | View | |
7338 | CVE-2003-0511 | Candidate | The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of service (reload) via a malformed URL. | Assigned (20030707) | None (candidate not yet proposed) | View | |
7339 | CVE-2003-0512 | Candidate | Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge. | Assigned (20030707) | None (candidate not yet proposed) | View | |
7342 | CVE-2003-0515 | Candidate | SQL injection vulnerabilities in the (1) PostgreSQL or (2) MySQL authentication modules for teapop 0.3.5 and earlier allow attackers to execute arbitrary SQL and possibly gain privileges. | Assigned (20030707) | None (candidate not yet proposed) | View | |
7343 | CVE-2003-0516 | Candidate | cnd.c in mgetty 1.1.28 and earlier does not properly filter non-printable characters and quotes, which may allow remote attackers to execute arbitrary commands via shell metacharacters in (1) caller ID or (2) caller name strings. | Assigned (20030707) | None (candidate not yet proposed) | View |
Page 717 of 20943, showing 5 records out of 104715 total, starting on record 3581, ending on 3585