Show filters
123 Total Results
Displaying 111-120 of 123
Sort by:
Attacker Value
Unknown

CVE-2003-0196

Disclosure Date: May 05, 2003 (last updated February 22, 2025)
Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discovered by the Samba team and a different vulnerability than CVE-2003-0201.
0
Attacker Value
Unknown

CVE-2003-0134

Disclosure Date: April 11, 2003 (last updated February 22, 2025)
Unknown vulnerability in filestat.c for Apache running on OS2, versions 2.0 through 2.0.45, allows unknown attackers to cause a denial of service via requests related to device names.
0
Attacker Value
Unknown

CVE-2003-0085

Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2002-1265

Disclosure Date: November 12, 2002 (last updated February 22, 2025)
The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from TCP connections, which allows remote attackers to cause a denial of service (hang).
0
Attacker Value
Unknown

CVE-2002-0840

Disclosure Date: October 11, 2002 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in the default error page of Apache 2.0 before 2.0.43, and 1.3.x up to 1.3.26, when UseCanonicalName is "Off" and support for wildcard DNS is present, allows remote attackers to execute script as other web page visitors via the Host: header, a different vulnerability than CAN-2002-1157.
0
Attacker Value
Unknown

CVE-2002-1593

Disclosure Date: September 25, 2002 (last updated February 22, 2025)
mod_dav in Apache before 2.0.42 does not properly handle versioning hooks, which may allow remote attackers to kill a child process via a null dereference and cause a denial of service (CPU consumption) in a preforked multi-processing module.
0
Attacker Value
Unknown

CVE-2002-0654

Disclosure Date: September 05, 2002 (last updated February 22, 2025)
Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to determine the full pathname of the server via (1) a request for a .var file, which leaks the pathname in the resulting error message, or (2) via an error message that occurs when a script (child process) cannot be invoked.
0
Attacker Value
Unknown

CVE-2002-0661

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing \ (backslash) characters.
0
Attacker Value
Unknown

CVE-2002-0249

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
PHP for Windows, when installed on Apache 2.0.28 beta as a standalone CGI module, allows remote attackers to obtain the physical path of the php.exe via a request with malformed arguments such as /123, which leaks the pathname in the error message.
0
Attacker Value
Unknown

CVE-2002-0240

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
PHP, when installed with Apache and configured to search for index.php as a default web page, allows remote attackers to obtain the full pathname of the server via the HTTP OPTIONS method, which reveals the pathname in the resulting error message.
0