Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2004-03-29 CVE-2003-1011 Local Root Privilege Elevation vulnerability in MacOS X
Apple Mac OS X 10.0 through 10.2.8 allows local users with a USB keyboard to gain unauthorized access by holding down the CTRL and C keys when the system is booting, which crashes the init process and leaves the user in a root shell.
local
low complexity
apple
7.2
2004-03-29 CVE-2003-1006 Local Buffer Overflow vulnerability in MacOSX CD9660.Util Probe For Mounting Argument
Buffer overflow in cd9660.util in Apple Mac OS X 10.0 through 10.3.2 and Apple Mac OS X Server 10.0 through 10.3.2 may allow local users to execute arbitrary code via a long command line parameter.
local
low complexity
apple
7.2
2004-03-29 CVE-2003-0796 Unspecified vulnerability in SGI Irix
Unknown vulnerability in rpc.mountd SGI IRIX 6.5.18 through 6.5.22 allows remote attackers to mount from unprivileged ports even with the -n option disabled.
network
low complexity
sgi
7.5
2004-03-29 CVE-2003-0601 Unspecified vulnerability in Apple mac OS X Server
Workgroup Manager in Apple Mac OS X Server 10.2 through 10.2.6 does not disable a password for a new account before it is saved for the first time, which allows remote attackers to gain unauthorized access via the new account before it is saved.
network
low complexity
apple
7.5
2004-03-29 CVE-2003-0444 Unspecified vulnerability in Gtksee 0.5/0.5.1
Heap-based buffer overflow in GTKSee 0.5 and 0.5.1 allows remote attackers to execute arbitrary code via a PNG image of certain color depths.
network
low complexity
gtksee
7.5
2004-03-26 CVE-2004-1864 Unspecified vulnerability in XMB Forum XMB 1.8Sp3/1.9Beta
SQL injection vulnerability in Extreme Messageboard (XMB) 1.9 beta allows remote attackers to execute arbitrary SQL commands via the restrict parameter to (1) member.php, (2) misc.php, or (3) today.php.
network
low complexity
xmb-forum
7.5
2004-03-25 CVE-2004-1868 Remote Buffer Overflow vulnerability in Esignal 7.5/7.6
Stack-based buffer overflow in WinSig.exe in eSignal 7.5 and 7.6 allows remote attackers to execute arbitrary code via a long STREAMQUOTE tag.
network
low complexity
esignal
7.5
2004-03-24 CVE-2004-2037 Remote Denial Of Service vulnerability in Mollensoft Software Lightweight FTP Server 3.6
Buffer overflow in Mollensoft Lightweight FTP Server 3.6 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long CWD command, as demonstrated in one example by using the "cd" command in an interactive FTP client.
network
low complexity
mollensoft-software
7.5
2004-03-24 CVE-2004-1854 Remote Buffer Overflow vulnerability in Picophone Internet Telephone 1.63
Buffer overflow in the logging function in Picophone 1.63 and earlier allows remote attackers to execute arbitrary code via a large packet.
network
low complexity
picophone
7.5
2004-03-24 CVE-2004-1851 Weak Random Key Generation vulnerability in Dameware Development Mini Remote Control Server 4.1.0.0
Dameware Mini Remote Control 4.1.0.0 uses insufficiently random data to create the encryption key, which makes it easier for remote attackers to obtain sensitive information via brute force guessing.
network
low complexity
dameware-development
7.5