Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29935 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-0281 1 Firebirdsql 1 Firebird 2026-06-16 4.6 MEDIUM N/A
Buffer overflow in Firebird 1.0.2 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_inet_server, (2) gds_lock_mgr, or (3) gds_drop.
CVE-2003-0280 1 Youngzsoft 1 Cmailserver 2026-06-16 10.0 HIGH N/A
Multiple buffer overflows in the SMTP Service for ESMTP CMailServer 4.0.2003.03.27 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.
CVE-2003-0279 1 Francisco Burzi 1 Php-nuke 2026-06-16 2.6 LOW N/A
Multiple SQL injection vulnerabilities in the Web_Links module for PHP-Nuke 5.x through 6.5 allows remote attackers to steal sensitive information via numeric fields, as demonstrated using (1) the viewlink function and cid parameter, or (2) index.php.
CVE-2003-0278 1 Happycgi.com 1 Happymall 2026-06-16 6.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote attackers to insert arbitrary web script via the file parameter.
CVE-2003-0277 1 Happycgi 1 Happymall 2026-06-16 5.0 MEDIUM N/A
Directory traversal vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences in the file parameter.
CVE-2003-0276 1 Pi3 1 Pi3web 2026-06-16 5.0 MEDIUM N/A
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GET request with a large number of / characters.
CVE-2003-0275 1 Yabb 1 Yabb 2026-06-16 5.1 MEDIUM N/A
SSI.php in YaBB SE 1.5.2 allows remote attackers to execute arbitrary PHP code by modifying the sourcedir parameter to reference a URL on a remote web server that contains the code.
CVE-2003-0274 1 Cren 1 Listproc 2026-06-16 10.0 HIGH N/A
Buffer overflow in catmail for ListProc 8.2.09 and earlier allows remote attackers to execute arbitrary code via a long ULISTPROC_UMASK value.
CVE-2003-0273 1 Best Practical Solutions 1 Request Tracker 2026-06-16 6.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the web interface for Request Tracker (RT) 1.0 through 1.0.7 allows remote attackers to execute script via message bodies.
CVE-2003-0272 1 Miniportal 1 Miniportal 2026-06-16 10.0 HIGH N/A
admin.php in miniPortail allows remote attackers to gain administrative privileges by setting the miniPortailAdmin cookie to an "adminok" value.
CVE-2003-0271 1 Cooolsoft 1 Personal Ftp Server 2026-06-16 7.5 HIGH N/A
Buffer overflow in Personal FTP Server allows remote attackers to execute arbitrary code via a long USER argument.
CVE-2003-0270 1 Apple 1 802.11n 2026-06-16 7.6 HIGH N/A
The administration capability for Apple AirPort 802.11 wireless access point devices uses weak encryption (XOR with a fixed key) for protecting authentication credentials, which could allow remote attackers to obtain administrative access via sniffing when the capability is available via Ethernet or non-WEP connections.
CVE-2003-0269 1 Youbin 1 Youbin 2026-06-16 7.2 HIGH N/A
Buffer overflow in youbin allows local users to gain privileges via a long HOME environment variable.
CVE-2003-0268 1 Bvrp Software 1 Slwebmail 2026-06-16 5.0 MEDIUM N/A
SLWebMail 3 on Windows systems allows remote attackers to identify the full path of the server via invalid requests to DLLs such as WebMailReq.dll, which reveals the path in an error message.
CVE-2003-0267 1 Bvrp Software 1 Slwebmail 2026-06-16 5.0 MEDIUM N/A
ShowGodLog.dll in SLWebMail 3 on Windows systems allows remote attackers to read arbitrary files by directly calling ShowGodLog.dll with an argument specifying the full path of the target file.
CVE-2003-0266 1 Bvrp Software 1 Slwebmail 2026-06-16 7.5 HIGH N/A
Multiple buffer overflows in SLWebMail 3 on Windows systems allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long Language parameter to showlogin.dll, (2) a long CompanyID parameter to recman.dll, (3) a long CompanyID parameter to admin.dll, or (4) a long CompanyID parameter to globallogin.dll.
CVE-2003-0265 1 Sap 1 Sap Db 2026-06-16 6.2 MEDIUM N/A
Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.
CVE-2003-0264 1 Seattle Lab Software 1 Slmail 2026-06-16 7.5 HIGH N/A
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.
CVE-2003-0263 1 Floosietek 1 Ftgatepro 2026-06-16 7.5 HIGH N/A
Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.
CVE-2003-0262 1 Leksbot 1 Leksbot 2026-06-16 7.2 HIGH N/A
leksbot 1.2.3 in Debian GNU/Linux installs the KATAXWR as setuid root, which allows local users to gain root privileges by exploiting unknown vulnerabilities related to the escalated privileges, which KATAXWR is not designed to have.