Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1343 Improper Authentication vulnerability in Trend Micro Scanmail
Trend Micro ScanMail for Exchange (SMEX) before 3.81 and before 6.1 might install a back door account in smg_Smxcfg30.exe, which allows remote attackers to gain access to the web management interface via the vcc parameter, possibly "3560121183d3".
network
low complexity
trend-micro CWE-287
7.5
2003-12-31 CVE-2003-1341 Configuration vulnerability in Trend Micro Officescan and Virus Buster
The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.
network
low complexity
trend-micro CWE-16
7.5
2003-12-31 CVE-2003-1337 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Aprelium Technologies Abyss web Server
Heap-based buffer overflow in Aprelium Abyss Web Server 1.1.2 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
network
low complexity
aprelium-technologies CWE-119
7.5
2003-12-31 CVE-2003-1332 Remote Security vulnerability in Samba
Stack-based buffer overflow in the reply_nttrans function in Samba 2.2.7a and earlier allows remote attackers to execute arbitrary code via a crafted request, a different vulnerability than CVE-2003-0201.
network
low complexity
linux samba
7.5
2003-12-31 CVE-2003-1329 Denial-Of-Service vulnerability in Washington University Wu-Ftpd 2.6.2
ftpd.c in wu-ftpd 2.6.2, when running on "operating systems that only allow one non-connected socket bound to the same local address," does not close failed connections, which allows remote attackers to cause a denial of service.
network
low complexity
washington-university
7.8
2003-12-31 CVE-2003-1321 Buffer Overflow vulnerability in Avant Force Avant Browser 8.2
Buffer overflow in Avant Browser 8.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL in an HTTP request.
network
low complexity
avant-force
7.5
2003-12-31 CVE-2003-1319 Buffer Overflow vulnerability in SmartFTP PWD Command Request
Multiple buffer overflows in SmartFTP 1.0.973, and other versions before 1.0.976, allow remote attackers to execute arbitrary code via (1) a long response to a PWD command, which triggers a stack-based overflow, and (2) a long line in a response to a file LIST command, which triggers a heap-based overflow.
network
high complexity
smartftp
7.6
2003-12-31 CVE-2003-1318 Remote Denial Of Service vulnerability in Twilight Webserver
Twilight Webserver 1.3.3.0 allows remote attackers to cause a denial of service (application crash) via a GET request for a long URI, a different vulnerability than CVE-2004-2376.
network
low complexity
twilight-utilities
7.8
2003-12-31 CVE-2003-1315 SQL Injection vulnerability in Neocrome Land Down Under 701
SQL injection vulnerability in auth.php in Land Down Under (LDU) v601 and earlier allows remote attackers to execute arbitrary SQL commands.
network
low complexity
neocrome
7.5
2003-12-31 CVE-2003-1314 Remote File Include vulnerability in Eternalmart Guestbook 1.1
PHP remote file inclusion vulnerability in admin/auth.php in EternalMart Guestbook (EMGB) 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the emgb_admin_path parameter.
network
low complexity
eternalmart
7.5