271061
|
- |
|
microsoft
|
mn-500_wireless_base_station
|
The backup configuration file for Microsoft MN-500 wireless base station stores administrative passwords in plaintext, which allows local users to gain access.
|
CWE-255
Credentials Management
|
CVE-2003-1482
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271062
|
- |
|
clearswift
|
mailsweeper
|
Clearswift MAILsweeper 4.0 through 4.3.7 allows remote attackers to bypass filtering via a file attachment that contains "multiple extensions combined with large blocks of white space."
|
CWE-20
Improper Input Validation
|
CVE-2003-1485
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271063
|
- |
|
snert.com
|
mod_throttle
|
mod_throttle 3.0 allows local users with Apache privileges to access shared memory that points to a file that is writable by the apache user, which could allow local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2003-1502
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271064
|
- |
|
mirc
|
mirc
|
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filena…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1508
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271065
|
- |
|
bajie
|
java_http_server
|
Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the g…
|
CWE-79
Cross-site Scripting
|
CVE-2003-1511
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271066
|
- |
|
khaled_mardam-bey
|
mirc
|
Buffer overflow in mIRC 6.1 and 6.11 allows remote attackers to cause a denial of service (crash) via a long DCC SEND request.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1512
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271067
|
- |
|
sun
|
java_plug-in
|
The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote …
|
NVD-CWE-Other
|
CVE-2003-1516
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271068
|
- |
|
fuzzymonkey
|
myclassifieds
|
SQL injection vulnerability in FuzzyMonkey My Classifieds 2.11 allows remote attackers to execute arbitrary SQL commands via the email parameter.
|
CWE-89
SQL Injection
|
CVE-2003-1520
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271069
|
- |
|
sun
|
java_plug-in
|
Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDocument method in the org.apache.crimson.tree.XmlDocument class, which violates t…
|
NVD-CWE-Other
|
CVE-2003-1521
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271070
|
- |
|
francisco_burzi
|
php-nuke
|
PHP-Nuke 7.0 allows remote attackers to obtain the installation path via certain characters such as (1) ", (2) ', or (3) > in the search field, which reveals the path in an error message.
|
CWE-200
Information Exposure
|
CVE-2003-1526
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|