Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2003-11-17 CVE-2003-0875 Local Security vulnerability in OpenSLP
Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via the route.check temporary file.
local
low complexity
openslp
2.1
2003-11-17 CVE-2003-0874 SQL Injection vulnerability in Deskpro 1.1.0
Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized activities via (1) the cat parameter in faq.php, (2) the article parameter in faq.php, (3) the tickedid parameter in view.php, and (4) the Password entry on the logon screen.
network
low complexity
deskpro
5.0
2003-11-17 CVE-2003-0872 Unspecified vulnerability in SCO Openserver 5.0.5
Certain scripts in OpenServer before 5.0.6 allow local users to overwrite files and conduct other unauthorized activities via a symlink attack on temporary files.
local
low complexity
sco
2.1
2003-11-17 CVE-2003-0870 Out-of-bounds Write vulnerability in Opera Browser 7.11/7.20
Heap-based buffer overflow in Opera 7.11 and 7.20 allows remote attackers to execute arbitrary code via an HREF with a large number of escaped characters in the server name.
network
low complexity
opera CWE-787
7.5
2003-11-17 CVE-2003-0865 Remote File Play Heap Corruption vulnerability in Mpg123 0.59R/0.59S
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a long request.
network
low complexity
mpg123
7.5
2003-11-17 CVE-2003-0864 Local Buffer Overflow vulnerability in IRCnet IRCD
Buffer overflow in m_join in channel.c for IRCnet IRCD 2.10.x to 2.10.3p3 allows remote attackers to cause a denial of service.
network
low complexity
ircnet
5.0
2003-11-17 CVE-2003-0863 Unspecified vulnerability in PHP 4.3.0/4.3.1/4.3.2
The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_mode_include_dir variable is not specified in configuration, which differs from the previous failure value and may allow remote attackers to exploit file include vulnerabilities in PHP applications.
network
low complexity
php
7.5
2003-11-17 CVE-2003-0861 Remote Security vulnerability in PHP
Integer overflows in (1) base64_encode and (2) the GD library for PHP before 4.3.3 have unknown impact and unknown attack vectors.
network
low complexity
php
critical
10.0
2003-11-17 CVE-2003-0860 Unspecified vulnerability in PHP
Buffer overflows in PHP before 4.3.3 have unknown impact and unknown attack vectors.
network
low complexity
php
critical
10.0
2003-11-17 CVE-2003-0854 ls in the fileutils or coreutils packages allows local users to consume a large amount of memory via a large -w value, which can be remotely exploited via applications that use ls, such as wu-ftpd.
local
low complexity
gnu washington-university
2.1