|
313501
|
- |
|
ethereal_group
|
ethereal
|
The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.
|
NVD-CWE-Other
|
CVE-2003-0431
|
2024-02-14 10:17 |
2003-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313502
|
- |
|
ethereal_group
|
ethereal
|
Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dis…
|
NVD-CWE-Other
|
CVE-2003-0432
|
2024-02-14 10:17 |
2003-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313503
|
- |
|
ethereal_group
|
ethereal
|
Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) Mount and (2) PPP dissecto…
|
NVD-CWE-Other
|
CVE-2003-0357
|
2024-02-14 10:17 |
2003-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313504
|
- |
|
miniportal
|
miniportal
|
admin.php in miniPortail allows remote attackers to gain administrative privileges by setting the miniPortailAdmin cookie to an "adminok" value.
|
NVD-CWE-Other
|
CVE-2003-0272
|
2024-02-14 10:17 |
2003-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313505
|
- |
|
battleaxe_software
|
bttlxeforum
|
SQL injection vulnerability in bttlxeForum 2.0 beta 3 and earlier allows remote attackers to bypass authentication via the (1) username and (2) password fields, and possibly other fields.
|
NVD-CWE-Other
|
CVE-2003-0215
|
2024-02-14 10:17 |
2003-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313506
|
- |
|
the_cacti_group
|
cacti
|
graphs.php in Cacti before 0.6.8 allows remote authenticated Cacti administrators to execute arbitrary commands via shell metacharacters in the title during edit mode.
|
NVD-CWE-Other
|
CVE-2002-1477
|
2024-02-14 10:17 |
2003-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313507
|
- |
|
the_cacti_group
|
cacti
|
Cacti before 0.6.8 allows attackers to execute arbitrary commands via the "Data Input" option in console mode.
|
NVD-CWE-Other
|
CVE-2002-1478
|
2024-02-14 10:17 |
2003-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313508
|
- |
|
the_cacti_group
|
cacti
|
Cacti before 0.6.8 stores a MySQL username and password in plaintext in config.php, which has world-readable permissions, which allows local users to modify databases as the Cacti user and possibly g…
|
NVD-CWE-Other
|
CVE-2002-1479
|
2024-02-14 10:17 |
2003-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313509
|
- |
|
endity.com
|
shoutbox
|
Cross-site scripting vulnerability in board.php of endity.com ShoutBOX allows remote attackers to inject arbitrary HTML into the shoutbox page via the site parameter.
|
NVD-CWE-Other
|
CVE-2002-1429
|
2024-02-14 10:17 |
2003-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313510
|
- |
|
ethereal_group
|
ethereal
|
Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2003-0159
|
2024-02-14 10:17 |
2003-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|