CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7337  CVE-2003-0510  Candidate  Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sessions" command.  Assigned (20030703)  None (candidate not yet proposed)    View
7338  CVE-2003-0511  Candidate  The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of service (reload) via a malformed URL.  Assigned (20030707)  None (candidate not yet proposed)    View
7339  CVE-2003-0512  Candidate  Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.  Assigned (20030707)  None (candidate not yet proposed)    View
7342  CVE-2003-0515  Candidate  SQL injection vulnerabilities in the (1) PostgreSQL or (2) MySQL authentication modules for teapop 0.3.5 and earlier allow attackers to execute arbitrary SQL and possibly gain privileges.  Assigned (20030707)  None (candidate not yet proposed)    View
7343  CVE-2003-0516  Candidate  cnd.c in mgetty 1.1.28 and earlier does not properly filter non-printable characters and quotes, which may allow remote attackers to execute arbitrary commands via shell metacharacters in (1) caller ID or (2) caller name strings.  Assigned (20030707)  None (candidate not yet proposed)    View

Page 717 of 20943, showing 5 records out of 104715 total, starting on record 3581, ending on 3585

Actions