CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7664  CVE-2003-0840  Candidate  Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root privileges via a long DISPLAY environment variable.  Assigned (20031008)  None (candidate not yet proposed)    View
7665  CVE-2003-0841  Candidate  The grid option in PeopleSoft 8.42 stores temporary .xls files in guessable directories under the web document root, which allows remote attackers to steal search results by directly accessing the files via a URL request.  Assigned (20031008)  None (candidate not yet proposed)    View
7666  CVE-2003-0842  Candidate  Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.  Assigned (20031008)  None (candidate not yet proposed)    View
7667  CVE-2003-0843  Candidate  Format string vulnerability in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode and using the Apache log, allows remote attackers to execute arbitrary code via format string characters in an HTTP GET request with an "Accept-Encoding: gzip" header.  Assigned (20031008)  None (candidate not yet proposed)    View
7668  CVE-2003-0844  Candidate  mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode without the Apache log, allows local users to overwrite arbitrary files via (1) a symlink attack on predictable temporary filenames on Unix systems, or (2) an NTFS hard link on Windows systems when the "Strengthen default permissions of internal system objects" policy is not enabled.  Assigned (20031008)  None (candidate not yet proposed)    View

Page 782 of 20943, showing 5 records out of 104715 total, starting on record 3906, ending on 3910

Actions