CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7495  CVE-2003-0668  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030807)  None (candidate not yet proposed)    View
7496  CVE-2003-0669  Candidate  Unknown vulnerability in Solaris 2.6 through 9 causes a denial of service (system panic) via "a rare race condition" or an attack by local users.  Assigned (20030807)  None (candidate not yet proposed)    View
7497  CVE-2003-0670  Candidate  Sustworks IPNetSentryX and IPNetMonitorX allow local users to sniff network packets via the setuid helper applications (1) RunTCPDump, which calls tcpdump, and (2) RunTCPFlow, which calls tcpflow.  Assigned (20030807)  None (candidate not yet proposed)    View
7498  CVE-2003-0671  Candidate  Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow.  Assigned (20030807)  None (candidate not yet proposed)    View
7499  CVE-2003-0672  Candidate  Format string vulnerability in pam-pgsql 0.5.2 and earlier allows remote attackers to execute arbitrary code via the username that isp rovided during authentication, which is not properly handled when recording a log message.  Assigned (20030807)  None (candidate not yet proposed)    View

Page 748 of 20943, showing 5 records out of 104715 total, starting on record 3736, ending on 3740

Actions