|
299761
|
- |
|
openbsd
|
openbsd
|
chpass in OpenBSD 2.0 through 3.2 allows local users to read portions of arbitrary files via a hard link attack on a temporary file used to store user database information.
|
CWE-200
Information Exposure
|
CVE-2003-1366
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299762
|
- |
|
great_circle_associates
|
majordomo
|
The which_access variable for Majordomo 2.0 through 1.94.4, and possibly earlier versions, is set to "open" by default, which allows remote attackers to identify the email addresses of members of mai…
|
CWE-16
Configuration
|
CVE-2003-1367
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299763
|
- |
|
electrasoft
|
ftp_client
|
Buffer overflow in the 32bit FTP client 9.49.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1368
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299764
|
- |
|
save_it_software_pty
|
bytecatcherftp
|
Buffer overflow in ByteCatcher FTP client 1.04b allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1369
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299765
|
- |
|
nuked-klan
|
nuked-klan
|
Multiple cross-site scripting (XSS) vulnerabilities in Nuked-Klan 1.2b allow remote attackers to inject arbitrary HTML or web script via (1) the Author field in the Guestbook module, (2) the Titre or…
|
CWE-79
Cross-site Scripting
|
CVE-2003-1370
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299766
|
- |
|
nuked-klan
|
nuked-klan
|
Nuked-Klan 1.3b, and possibly earlier versions, allows remote attackers to obtain sensitive server information via an op parameter set to phpinfo for the (1) Team, (2) News, or (3) Liens modules.
|
CWE-79
Cross-site Scripting
|
CVE-2003-1371
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299767
|
- |
|
myphpnuke
|
myphpnuke
|
Cross-site scripting (XSS) vulnerability in links.php script in myPHPNuke 1.8.8, and possibly earlier versions, allows remote attackers to inject arbitrary HTML and web script via the (1) ratenum or …
|
CWE-79
Cross-site Scripting
|
CVE-2003-1372
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299768
|
- |
|
phpbb_group
|
phpbb
|
Directory traversal vulnerability in auth.php for PhpBB 1.4.0 through 1.4.4 allows remote attackers to read and include arbitrary files via .. (dot dot) sequences followed by NULL (%00) characters in…
|
CWE-22
Path Traversal
|
CVE-2003-1373
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299769
|
- |
|
hp
|
hp-ux
|
Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1374
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299770
|
- |
|
winzip
|
winzip
|
WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the stat…
|
CWE-255
Credentials Management
|
CVE-2003-1376
|
2017-07-29 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|