Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1463 Improper Input Validation vulnerability in Alt-N Webadmin 2.0.0/2.0.1/2.0.2
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with administrator privileges to (1) determine the installation path by reading the contents of the Name parameter in a link, and (2) read arbitrary files via an absolute path in the Name parameter.
3.5
2003-12-31 CVE-2003-1450 Improper Input Validation vulnerability in Bitchx
BitchX 75p3 and 1.0c16 through 1.0c20cvs allows remote attackers to cause a denial of service (segmentation fault) via a malformed RPL_NAMREPLY numeric 353 message.
network
low complexity
bitchx CWE-20
5.0
2003-12-31 CVE-2003-1444 Improper Input Validation vulnerability in Kaspersky LAB Kaspersky Anti-Virus 4.0.9.0
Kaspersky Antivirus (KAV) 4.0.9.0 allows local users to cause a denial of service (CPU consumption or crash) and prevent malicious code from being detected via a file with a long pathname.
4.4
2003-12-31 CVE-2003-1443 Improper Input Validation vulnerability in Kaspersky LAB Kaspersky Anti-Virus 4.0.9.0
Kaspersky Antivirus (KAV) 4.0.9.0 does not detect viruses in files with MS-DOS device names in their filenames, which allows local users to bypass virus protection, as demonstrated using aux.vbs and aux.com.
4.4
2003-12-31 CVE-2003-1441 Improper Input Validation vulnerability in Posadis
Posadis 0.50.4 through 0.50.8 allows remote attackers to cause a denial of service (crash) via a DNS message without a question section, which triggers null dereference.
network
posadis CWE-20
4.3
2003-12-31 CVE-2003-1440 Improper Input Validation vulnerability in Burton Computer Corporation Spamprobe 0.8A
SpamProbe 0.8a allows remote attackers to cause a denial of service (crash) via HTML e-mail with newline characters within an href tag, which is not properly handled by certain regular expressions.
4.3
2003-12-31 CVE-2003-1425 Improper Input Validation vulnerability in Cpanel 5.0
guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.
network
low complexity
cpanel CWE-20
critical
10.0
2003-12-31 CVE-2003-1419 Improper Input Validation vulnerability in Netscape Navigator 7.0
Netscape 7.0 allows remote attackers to cause a denial of service (crash) via a web page with an invalid regular expression argument to the JavaScript reformatDate function.
network
netscape CWE-20
4.3
2003-12-31 CVE-2003-1416 Improper Input Validation vulnerability in Bisonftp Server 4 R2
BisonFTP Server 4 release 2 allows remote attackers to cause a denial of service (CPU consumption) via a long (1) ls or (2) cwd command.
network
bisonftp CWE-20
4.3
2003-12-31 CVE-2003-1405 Improper Input Validation vulnerability in Dotbr Botbr 0.1
DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1) exec.php3 or (2) system.php3.
network
low complexity
dotbr CWE-20
7.5