|
346211
|
- |
|
bea
|
tuxedo weblogic_server
|
The Administration Console for BEA Tuxedo 8.1 and earlier allows remote attackers to cause a denial of service (hang) via pathname arguments that contain MS-DOS device names such as CON and AUX.
|
NVD-CWE-Other
|
CVE-2003-0622
|
2017-07-11 10:29 |
2003-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346212
|
- |
|
bea
|
tuxedo weblogic_server
|
Cross-site scripting (XSS) vulnerability in the Administration Console for BEA Tuxedo 8.1 and earlier allows remote attackers to inject arbitrary web script via the INIFILE argument.
|
NVD-CWE-Other
|
CVE-2003-0623
|
2017-07-11 10:29 |
2003-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346213
|
- |
|
bea
|
weblogic_server
|
Cross-site scripting (XSS) vulnerability in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier allows remote attackers to inject malicious web script via the person parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2003-0624
|
2017-07-11 10:29 |
2003-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346214
|
- |
|
peoplesoft
|
peopletools
|
psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to read arbitrary files via the (1) headername or (2) footername arguments.
|
NVD-CWE-Other
|
CVE-2003-0626
|
2017-07-11 10:29 |
2003-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346215
|
- |
|
peoplesoft
|
peopletools
|
psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to cause a denial of service (application crash), possibly via the headername and footername arguments.
|
NVD-CWE-Other
|
CVE-2003-0627
|
2017-07-11 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346216
|
- |
|
oracle
|
oracle8i oracle9i
|
Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, allows authenticated database users, and arbitrary database users in some cases, …
|
NVD-CWE-Other
|
CVE-2003-0634
|
2017-07-11 10:29 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346217
|
- |
|
watchguard
|
serverlock
|
WatchGuard ServerLock for Windows 2000 before SL 2.0.3 allows local users to load arbitrary modules via the OpenProcess() function, as demonstrated using (1) a DLL injection attack, (2) ZwSetSystemIn…
|
NVD-CWE-Other
|
CVE-2003-0641
|
2017-07-11 10:29 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346218
|
- |
|
watchguard
|
serverlock
|
WatchGuard ServerLock for Windows 2000 before SL 2.0.4 allows local users to access kernel memory via a symlink attack on \Device\PhysicalMemory.
|
NVD-CWE-Other
|
CVE-2003-0642
|
2017-07-11 10:29 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346219
|
- |
|
andries_brouwer
|
man
|
man-db 2.3.12 and 2.3.18 to 2.4.1 uses certain user-controlled DEFINE directives from the ~/.manpath file, even when running setuid, which could allow local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2003-0645
|
2017-07-11 10:29 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346220
|
- |
|
fte debian
|
fte_text_editor debian_linux
|
Multiple buffer overflows in vfte, based on FTE, before 0.50, allow local users to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2003-0648
|
2017-07-11 10:29 |
2004-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|