271361
|
- |
|
freebsd
|
slashem-tty
|
slashem-tty in the FreeBSD Ports Collection is installed with write permissions for the games group, which allows local users with group games privileges to modify slashem-tty and execute arbitrary c…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2003-1474
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271362
|
- |
|
cerberus
|
ftp_server
|
Cerberus FTP Server 2.1 stores usernames and passwords in plaintext, which could allow local users to gain access.
|
NVD-CWE-Other
|
CVE-2003-1476
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271363
|
- |
|
microsoft
|
mn-500_wireless_base_station
|
The backup configuration file for Microsoft MN-500 wireless base station stores administrative passwords in plaintext, which allows local users to gain access.
|
CWE-255
Credentials Management
|
CVE-2003-1482
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271364
|
- |
|
clearswift
|
mailsweeper
|
Clearswift MAILsweeper 4.0 through 4.3.7 allows remote attackers to bypass filtering via a file attachment that contains "multiple extensions combined with large blocks of white space."
|
CWE-20
Improper Input Validation
|
CVE-2003-1485
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271365
|
- |
|
snert.com
|
mod_throttle
|
mod_throttle 3.0 allows local users with Apache privileges to access shared memory that points to a file that is writable by the apache user, which could allow local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2003-1502
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271366
|
- |
|
mirc
|
mirc
|
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filena…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1508
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271367
|
- |
|
bajie
|
java_http_server
|
Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the g…
|
CWE-79
Cross-site Scripting
|
CVE-2003-1511
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271368
|
- |
|
khaled_mardam-bey
|
mirc
|
Buffer overflow in mIRC 6.1 and 6.11 allows remote attackers to cause a denial of service (crash) via a long DCC SEND request.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1512
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271369
|
- |
|
sun
|
java_plug-in
|
The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote …
|
NVD-CWE-Other
|
CVE-2003-1516
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271370
|
- |
|
fuzzymonkey
|
myclassifieds
|
SQL injection vulnerability in FuzzyMonkey My Classifieds 2.11 allows remote attackers to execute arbitrary SQL commands via the email parameter.
|
CWE-89
SQL Injection
|
CVE-2003-1520
|
2008-09-6 05:37 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|