268351
|
- |
|
squished_mosquito
|
escapade
|
Cross-site scripting (XSS) vulnerability in Escapade Scripting Engine (ESP) allows remote attackers to inject arbitrary script via the method parameter, as demonstrated using the PAGE parameter.
|
NVD-CWE-Other
|
CVE-2003-0763
|
2016-10-18 11:37 |
2003-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268352
|
- |
|
squished_mosquito
|
escapade
|
Escapade Scripting Engine (ESP) allows remote attackers to obtain sensitive path information via a malformed request, which leaks the information in an error message, as demonstrated using the PAGE p…
|
NVD-CWE-Other
|
CVE-2003-0764
|
2016-10-18 11:37 |
2003-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268353
|
- |
|
nullsoft
|
winamp
|
The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large "Track data size" value.
|
NVD-CWE-Other
|
CVE-2003-0765
|
2016-10-18 11:37 |
2003-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268354
|
- |
|
gamespy
|
roger_wilco_dedicated_server roger_wilco_graphical_server
|
Buffer overflow in RogerWilco graphical server 1.4.1.6 and earlier, dedicated server 0.32a and earlier for Windows, and 0.27 and earlier for Linux and BSD, allows remote attackers to cause a denial o…
|
NVD-CWE-Other
|
CVE-2003-0767
|
2016-10-18 11:37 |
2003-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268355
|
- |
|
microsoft
|
asp.net
|
Microsoft ASP.Net 1.1 allows remote attackers to bypass the Cross-Site Scripting (XSS) and Script Injection protection feature via a null character in the beginning of a tag name.
|
NVD-CWE-Other
|
CVE-2003-0768
|
2016-10-18 11:37 |
2003-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268356
|
- |
|
ikonboard.com
|
ikonboard
|
FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains illegal characters, which allows remote attackers to execute arbitrary code when…
|
NVD-CWE-Other
|
CVE-2003-0770
|
2016-10-18 11:37 |
2003-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268357
|
- |
|
apache_gallery
|
apache_gallery
|
Gallery.pm in Apache::Gallery (aka A::G) uses predictable temporary filenames when running Inline::C, which allows local users to execute arbitrary code by creating and modifying the files before Apa…
|
NVD-CWE-Other
|
CVE-2003-0771
|
2016-10-18 11:37 |
2003-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268358
|
- |
|
gnu quagga sgi
|
zebra quagga propack
|
The vty layer in Quagga before 0.96.4, and Zebra 0.93b and earlier, does not verify that sub-negotiation is taking place when processing the SE marker, which allows remote attackers to cause a denial…
|
CWE-20
Improper Input Validation
|
CVE-2003-0795
|
2016-10-18 11:37 |
2003-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268359
|
- |
|
university_of_minnesota
|
gopherd
|
Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary code via (1) a long filename as a result of a LIST command, and (2) the GSisTex…
|
NVD-CWE-Other
|
CVE-2003-0805
|
2016-10-18 11:37 |
2003-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268360
|
- |
|
gnu
|
lsh
|
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attacke…
|
NVD-CWE-Other
|
CVE-2003-0826
|
2016-10-18 11:37 |
2003-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|