Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1128 Remote Command Execution vulnerability in X2 Studios Xmms Remote 0.1
XMMS.pm in X2 XMMS Remote, as obtained from the vendor server between 4 AM 11 AM PST on May 7, 2003, allows remote attackers to execute arbitrary commands via shell metacharacters in a request to TCP port 8086.
network
low complexity
x2-studios
7.5
2003-12-31 CVE-2003-1123 Unspecified vulnerability in SUN JDK and JRE
Sun Java Runtime Environment (JRE) and SDK 1.4.0_01 and earlier allows untrusted applets to access certain information within trusted applets, which allows attackers to bypass the restrictions of the Java security model.
network
low complexity
sun
7.5
2003-12-31 CVE-2003-1118 Remote Buffer Overflow vulnerability in SETI@home Client Program
Buffer overflow in the SETI@home client 3.03 and other versions allows remote attackers to cause a denial of service (client crash) and execute arbitrary code via a spoofed server response containing a long string followed by a \n (newline) character.
network
low complexity
university-of-california
7.5
2003-12-31 CVE-2003-1117 Denial-Of-Service vulnerability in Realsystem Server
Buffer overflow in RealSystem Server 6.x, 7.x and 8.x, and RealSystem Proxy 8.x, related to URL error handling, allows remote attackers to cause a denial of service and possibly execute arbitrary code.
network
low complexity
realnetworks
7.5
2003-12-31 CVE-2003-1115 Unspecified vulnerability in Nortel Succession Communication Server 2000
The Session Initiation Protocol (SIP) implementation in Nortel Networks Succession Communication Server 2000, when using SIP-T, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
network
low complexity
nortel
7.5
2003-12-31 CVE-2003-1114 Unspecified vulnerability in Mediatrix Telecom Voip Access Devices and Gateways Sipv2.3/Sipv2.4
The Session Initiation Protocol (SIP) implementation in Mediatrix Telecom VoIP Access Devices and Gateways running SIPv2.4 and SIPv4.3 firmware allows remote attackers to cause a denial of service or execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
network
low complexity
mediatrix-telecom
7.5
2003-12-31 CVE-2003-1113 Unspecified vulnerability in Iptel SIP Express Router 0.8.8/0.8.9
The Session Initiation Protocol (SIP) implementation in IPTel SIP Express Router 0.8.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
network
low complexity
iptel
7.5
2003-12-31 CVE-2003-1112 Unspecified vulnerability in Ingate Firewall and Ingate Siparator
The Session Initiation Protocol (SIP) implementation in Ingate Firewall and Ingate SIParator before 3.1.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
network
low complexity
ingate
7.5
2003-12-31 CVE-2003-1111 Unspecified vulnerability in Dynamicsoft Appengine
The Session Initiation Protocol (SIP) implementation in multiple dynamicsoft products including y and certain demo products for AppEngine allows remote attackers to cause a denial of service or execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
network
low complexity
dynamicsoft
7.5
2003-12-31 CVE-2003-1110 Unspecified vulnerability in Columbia University Sipc 1.74
The Session Initiation Protocol (SIP) implementation in Columbia SIP User Agent (sipc) 1.74 and other versions before sipc 2.0 build 2003-02-21 allows remote attackers to cause a denial of service or execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.
network
low complexity
columbia-university
7.5