Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2003-08-27 CVE-2003-0602 Local Dependency Graph HTML Injection vulnerability in Bugzilla
Multiple cross-site scripting vulnerabilities (XSS) in Bugzilla 2.16.x before 2.16.3 and 2.17.x before 2.17.4 allow remote attackers to insert arbitrary HTML or web script via (1) multiple default German and Russian HTML templates or (2) ALT and NAME attributes in AREA tags as used by the GraphViz graph generation feature for local dependency graphs.
network
mozilla
6.8
2003-08-27 CVE-2003-0599 Remote Security vulnerability in PHPgroupware 0.9.16Prerc
Unknown vulnerability in the Virtual File System (VFS) capability for phpGroupWare 0.9.16preRC and versions before 0.9.14.004 with unknown implications, related to the VFS path being under the web document root.
network
low complexity
phpgroupware
critical
10.0
2003-08-27 CVE-2003-0597 Unspecified vulnerability in SCO Openserver 5.0.6/5.0.7
Unknown vulnerability in display of Merge before 5.3.23a in UnixWare 7.1.x allows local users to gain root privileges.
local
low complexity
sco
7.2
2003-08-27 CVE-2003-0596 Unspecified vulnerability in Fdclone 2.00A
FDclone 2.00a, and other versions before 2.02a, creates temporary directories with predictable names and uses them if they already exist, which allows local users to read or modify files of other fdclone users by creating the directory ahead of time.
local
low complexity
fdclone
3.6
2003-08-27 CVE-2003-0576 Unspecified vulnerability in SGI Irix
Unknown vulnerability in the NFS daemon (nfsd) in SGI IRIX 6.5.19f and earlier allows remote attackers to cause a denial of service (kernel panic) via certain packets that cause XDR decoding errors, a different vulnerability than CVE-2003-0619.
network
low complexity
sgi
5.0
2003-08-27 CVE-2003-0575 Privilege Escalation vulnerability in SGI IRIX NSD AUTH_UNIX GID List
Heap-based buffer overflow in the name services daemon (nsd) in SGI IRIX 6.5.x through 6.5.21f, and possibly earlier versions, allows attackers to gain root privileges via the AUTH_UNIX gid list.
network
low complexity
sgi
critical
10.0
2003-08-27 CVE-2003-0562 Unspecified vulnerability in Novell Netware 5.1/6.0
Buffer overflow in the CGI2PERL.NLM PERL handler in Novell Netware 5.1 and 6.0 allows remote attackers to cause a denial of service (ABEND) via a long input string.
network
low complexity
novell
5.0
2003-08-27 CVE-2003-0552 Remote Security vulnerability in Redhat Linux 2.4.2
Linux 2.4.x allows remote attackers to spoof the bridge Forwarding table via forged packets whose source addresses are the same as the target.
network
low complexity
redhat
5.0
2003-08-27 CVE-2003-0551 Denial-Of-Service vulnerability in Redhat Linux 2.4.2
The STP protocol implementation in Linux 2.4.x does not properly verify certain lengths, which could allow attackers to cause a denial of service.
network
low complexity
redhat
5.0
2003-08-27 CVE-2003-0550 Remote Security vulnerability in Redhat Linux 2.4.2
The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology.
network
low complexity
redhat
5.0