Vulnerabilities > Microsoft > ALL Windows

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1430 Path Traversal vulnerability in Epic Games Unreal Engine 226F/433/436
Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known files via a ".." (dot dot) in an unreal:// URL.
network
low complexity
linux microsoft epic-games CWE-22
5.0
2003-12-31 CVE-2003-1423 Permissions, Privileges, and Access Controls vulnerability in Petitforum
Petitforum stores the liste.txt data file under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as e-mail addresses and encrypted passwords.
network
low complexity
linux microsoft unix petitforum CWE-264
5.0
2003-12-31 CVE-2003-1392 Cryptographic Issues vulnerability in multiple products
CryptoBuddy 1.0 and 1.2 does not use the user-supplied passphrase to encrypt data, which could allow local users to use their own passphrase to decrypt the data.
6.6
2003-12-31 CVE-2003-1372 Cross-Site Scripting vulnerability in Myphpnuke 1.8.8
Cross-site scripting (XSS) vulnerability in links.php script in myPHPNuke 1.8.8, and possibly earlier versions, allows remote attackers to inject arbitrary HTML and web script via the (1) ratenum or (2) query parameters.
4.3
2003-12-31 CVE-2003-1330 Unspecified vulnerability in Clearswift Limited Mailsweeper 4.3.6Sp1
Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.
network
low complexity
microsoft clearswift-limited
5.0