CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7633  CVE-2003-0809  Candidate  Internet Explorer 5.01 through 6.0 does not properly handle object tags returned from a Web server during XML data binding, which allows remote attackers to execute arbitrary code via an HTML e-mail message or web page.  Assigned (20030918)  None (candidate not yet proposed)    View
7634  CVE-2003-0810  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030918)  None (candidate not yet proposed)    View
7635  CVE-2003-0811  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030918)  None (candidate not yet proposed)    View
7636  CVE-2003-0812  Candidate  Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the NetAddAlternateComputerName API.  Assigned (20030918)  None (candidate not yet proposed)    View
7637  CVE-2003-0813  Candidate  A multi-threaded race condition in the Windows RPC DCOM functionality with the MS03-039 patch installed allows remote attackers to cause a denial of service (crash or reboot) by causing two threads to process the same RPC request, which causes one thread to use memory after it has been freed, a different vulnerability than CVE-2003-0352 (Blaster/Nachi), CVE-2003-0715, and CVE-2003-0528, and as demonstrated by certain exploits against those vulnerabilities.  Assigned (20030918)  NOOP(1) Christey  Christey> Note: MS04-012 references this CAN and credits eEye, who | describes a similar-looking issue in their advisory COMMENT | "AD20040413A." However, this particular candidate was published by | ISS in 2003. MITRE is investigating this discrepancy and will update | this candidate if necessary.  View

Page 776 of 20943, showing 5 records out of 104715 total, starting on record 3876, ending on 3880

Actions