Show filters
252 Total Results
Displaying 221-230 of 252
Sort by:
Attacker Value
Unknown
CVE-2003-1285
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server before 6.0 beta 6 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) isapi/testisa.dll, (2) testcgi.exe, (3) environ.pl, (4) the query parameter to samples/search.dll, (5) the price parameter to mortgage.pl, (6) the query string in dumpenv.pl, (7) the query string to dumpenv.pl, and (8) the E-Mail field of the guestbook script (book.pl).
0
Attacker Value
Unknown
CVE-2003-1332
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Stack-based buffer overflow in the reply_nttrans function in Samba 2.2.7a and earlier allows remote attackers to execute arbitrary code via a crafted request, a different vulnerability than CVE-2003-0201.
0
Attacker Value
Unknown
CVE-2003-1286
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
HTTP Proxy in Sambar Server before 6.0 beta 6, when security.ini lacks a 127.0.0.1 proxydeny entry, allows remote attackers to send proxy HTTP requests to the Sambar Server's administrative interface and external web servers, by making a "Connection: keep-alive" request before the proxy requests.
0
Attacker Value
Unknown
CVE-2003-0201
Disclosure Date: May 05, 2003 (last updated February 22, 2025)
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2003-0196
Disclosure Date: May 05, 2003 (last updated February 22, 2025)
Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discovered by the Samba team and a different vulnerability than CVE-2003-0201.
0
Attacker Value
Unknown
CVE-2003-0086
Disclosure Date: March 31, 2003 (last updated February 22, 2025)
The code for writing reg files in Samba before 2.2.8 allows local users to overwrite arbitrary files via a race condition involving chown.
0
Attacker Value
Unknown
CVE-2003-0085
Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2002-2196
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to execute arbitrary code via a buffer overflow attack.
0
Attacker Value
Unknown
CVE-2002-1318
Disclosure Date: December 11, 2002 (last updated February 22, 2025)
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a little-endian UCS2 unicode string.
0
Attacker Value
Unknown
CVE-2002-0737
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.
0