Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown
CVE-2003-1432
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (CPU consumption or crash) and possibly execute arbitrary code via (1) a packet with a negative size value, which is treated as a large positive number during memory allocation, or (2) a negative size value in a package file.
0
Attacker Value
Unknown
CVE-2003-0372
Disclosure Date: June 16, 2003 (last updated February 22, 2025)
Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code by causing a negative argument to be provided to the insstr function as used in a NASL script.
0
Attacker Value
Unknown
CVE-2002-2419
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Direct connect text client (DCTC) client 0.83.3 allows remote attackers to cause a denial of service (crash) via a string ending with a NULL byte character.
0
Attacker Value
Unknown
CVE-2002-2286
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
The parse-get function in utils.c for apt-www-proxy 0.1 allows remote attackers to cause a denial of service (crash) via an empty HTTP request, which causes a null dereference.
0
Attacker Value
Unknown
CVE-2002-2367
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Off-by-one buffer overflow in NEC SOCKS5 1.0 r11 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long hostname.
0
Attacker Value
Unknown
CVE-2002-2245
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
ftpd in NetBSD 1.5 through 1.5.3 and 1.6 does not properly quote a digit in response to a STAT command for a filename that contains a carriage return followed by a digit, which can cause firewalls and other intermediary devices to lose proper track of the FTP session.
0
Attacker Value
Unknown
CVE-2002-2235
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
member2.php in vBulletin 2.2.9 and earlier does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks.
0