Show filters
58 Total Results
Displaying 31-40 of 58
Sort by:
Attacker Value
Unknown
CVE-2004-0605
Disclosure Date: December 06, 2004 (last updated February 22, 2025)
Non-registered IRC users using (1) ircd-hybrid 7.0.1 and earlier, (2) ircd-ratbox 1.5.1 and earlier, or (3) ircd-ratbox 2.0rc6 and earlier do not have a rate-limit imposed, which could allow remote attackers to cause a denial of service by repeatedly making requests, which are slowly dequeued.
0
Attacker Value
Unknown
CVE-2003-1422
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Multiple unspecified vulnerabilities in the installer for SYSLINUX 2.01, when running setuid root, allow local users to gain privileges via unknown vectors.
0
Attacker Value
Unknown
CVE-2003-1367
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
The which_access variable for Majordomo 2.0 through 1.94.4, and possibly earlier versions, is set to "open" by default, which allows remote attackers to identify the email addresses of members of mailing lists via a "which" command.
0
Attacker Value
Unknown
CVE-2003-1362
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Bastille B.02.00.00 of HP-UX 11.00 and 11.11 does not properly configure the (1) NOVRFY and (2) NOEXPN options in the sendmail.cf file, which could allow remote attackers to verify the existence of system users and expand defined sendmail aliases.
0
Attacker Value
Unknown
CVE-2003-1357
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
ProxyView has a default administrator password of Administrator for Embedded Windows NT, which allows remote attackers to gain access.
0
Attacker Value
Unknown
CVE-2003-1452
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by modifying the PATH environment variable to reference a malicious smbpasswd program.
0
Attacker Value
Unknown
CVE-2003-1449
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Aladdin Knowlege Systems eSafe Gateway 3.5.126.0 does not check the entire stream of Content Vectoring Protocol (CVP) data, which allows remote attackers to bypass virus protection.
0
Attacker Value
Unknown
CVE-2003-1426
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Openwebmail in cPanel 5.0, when run using suid Perl, adds the directory in the SCRIPT_FILENAME environment variable to Perl's @INC include array, which allows local users to execute arbitrary code by modifying SCRIPT_FILENAME to reference a directory containing a malicious openwebmail-shared.pl executable.
0
Attacker Value
Unknown
CVE-2003-1491
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Kerio Personal Firewall (KPF) 2.1.4 has a default rule to accept incoming packets from DNS (UDP port 53), which allows remote attackers to bypass the firewall filters via packets with a source port of 53.
0
Attacker Value
Unknown
CVE-2003-1352
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Gabber 0.8.7 sends an email to a specific address during user login and logout, which allows remote attackers to obtain user session activity and Gabber version number by sniffing.
0