Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2003-0204 | 1 Kde | 1 Kde | 2016-10-17 | 7.5 HIGH | N/A |
KDE 2 and KDE 3.1.1 and earlier 3.x versions allows attackers to execute arbitrary commands via (1) PostScript (PS) or (2) PDF files, related to missing -dPARANOIDSAFER and -dSAFER arguments when using the kghostview Ghostscript viewer. | |||||
CVE-2003-0205 | 1 Gkrellm Newsticker | 1 Gkrellm Newsticker | 2016-10-17 | 7.5 HIGH | N/A |
gkrellm-newsticker gkrellm plugin before 0.3-3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the ticker title of a URI. | |||||
CVE-2003-0206 | 1 Gkrellm Newsticker | 1 Gkrellm Newsticker | 2016-10-17 | 5.0 MEDIUM | N/A |
gkrellm-newsticker gkrellm plugin before 0.3-3.1 allows remote attackers to cause a denial of service (crash) via (1) link or (2) title elements that contain multiple lines. | |||||
CVE-2003-0208 | 1 Macromedia | 1 Flash | 2016-10-17 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in Macromedia Flash ad user tracking capability allows remote attackers to insert arbitrary Javascript via the clickTAG field. | |||||
CVE-2003-0209 | 2 Smoothwall, Sourcefire | 2 Smoothwall, Snort | 2016-10-17 | 10.0 HIGH | N/A |
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow. | |||||
CVE-2003-0210 | 1 Cisco | 1 Secure Access Control Server | 2016-10-17 | 7.5 HIGH | N/A |
Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3.1.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long user parameter to port 2002. | |||||
CVE-2003-0212 | 1 Rinetd | 1 Rinetd | 2016-10-17 | 7.5 HIGH | N/A |
handleAccept in rinetd before 0.62 does not properly resize the connection list when it becomes full and sets an array index incorrectly, which allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large number of connections. | |||||
CVE-2003-0213 | 1 Poptop | 1 Pptp Server | 2016-10-17 | 7.5 HIGH | N/A |
ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow. | |||||
CVE-2003-0215 | 1 Battleaxe Software | 1 Bttlxeforum | 2016-10-17 | 7.5 HIGH | N/A |
SQL injection vulnerability in bttlxeForum 2.0 beta 3 and earlier allows remote attackers to bypass authentication via the (1) username and (2) password fields, and possibly other fields. | |||||
CVE-2003-0217 | 1 Neoteris | 1 Instant Virtual Extranet | 2016-10-17 | 6.8 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in Neoteris Instant Virtual Extranet (IVE) 3.01 and earlier allows remote attackers to insert arbitrary web script and bypass authentication via a certain CGI script. | |||||
CVE-2003-0219 | 1 Kerio | 1 Personal Firewall 2 | 2016-10-17 | 7.5 HIGH | N/A |
Kerio Personal Firewall (KPF) 2.1.4 and earlier allows remote attackers to execute administrator commands by sniffing packets from a valid session and replaying them against the remote administration server. | |||||
CVE-2003-0220 | 1 Kerio | 1 Personal Firewall 2 | 2016-10-17 | 7.5 HIGH | N/A |
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows remote attackers to execute arbitrary code via a handshake packet. | |||||
CVE-2003-0065 | 1 National University Of Singapore | 1 Uxterm | 2016-10-17 | 7.5 HIGH | N/A |
The uxterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | |||||
CVE-2003-0066 | 1 Rxvt | 1 Rxvt | 2016-10-17 | 7.5 HIGH | N/A |
The rxvt terminal emulator 2.7.8 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | |||||
CVE-2003-0067 | 1 Aterm | 1 Aterm | 2016-10-17 | 7.5 HIGH | N/A |
The aterm terminal emulator 0.42 allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | |||||
CVE-2003-0068 | 1 Michael Jennings | 1 Eterm | 2016-10-17 | 7.5 HIGH | N/A |
The Eterm terminal emulator 0.9.1 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | |||||
CVE-2003-0069 | 1 Putty | 1 Putty | 2016-10-17 | 7.5 HIGH | N/A |
The PuTTY terminal emulator 0.53 allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | |||||
CVE-2003-0070 | 2 Gnome, Nalin Dahyabhai | 2 Gnome-terminal, Vte | 2016-10-17 | 6.8 MEDIUM | N/A |
VTE, as used by default in gnome-terminal terminal emulator 2.2 and as an option in gnome-terminal 2.0, allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | |||||
CVE-2003-0071 | 1 Xfree86 Project | 1 X11r6 | 2016-10-17 | 2.1 LOW | N/A |
The DEC UDK processing feature in the xterm terminal emulator in XFree86 4.2.99.4 and earlier allows attackers to cause a denial of service via a certain character escape sequence that causes the terminal to enter a tight loop. | |||||
CVE-2003-0074 | 1 Plptools | 1 Plptools | 2016-10-17 | 7.2 HIGH | N/A |
Format string vulnerability in mpmain.c for plpnfsd of the plptools package allows remote attackers to execute arbitrary code via the functions (1) debuglog, (2) errorlog, and (3) infolog. |