Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-10-20 CVE-2003-0664 Unspecified vulnerability in Microsoft Word and Works
Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros via a malicious document.
network
low complexity
microsoft
7.5
2003-10-20 CVE-2003-0630 Unspecified vulnerability in Atari800
Multiple buffer overflows in the atari800.svgalib setuid program of the Atari 800 emulator (atari800) before 1.2.2 allow local users to gain privileges via long command line arguments, as demonstrated with the -osa_rom argument.
local
low complexity
atari800
7.2
2003-10-06 CVE-2003-0826 Unspecified vulnerability in GNU LSH 1.4/1.4.1/1.4.2
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack.
network
low complexity
gnu
7.5
2003-10-06 CVE-2003-0805 Unspecified vulnerability in University of Minnesota Gopherd
Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary code via (1) a long filename as a result of a LIST command, and (2) the GSisText function, which calculates the view-type.
network
low complexity
university-of-minnesota
7.5
2003-10-06 CVE-2003-0803 Remote Security vulnerability in Nokia Electronic Documentation 5.0
Nokia Electronic Documentation (NED) 5.0 allows remote attackers to use NED as an open HTTP proxy via a URL in the location parameter, which NED accesses and returns to the user.
network
low complexity
nokia
7.5
2003-10-06 CVE-2003-0785 Unspecified vulnerability in Brian Bassett Ipmasq 3.5.10
ipmasq before 3.5.12, in certain configurations, may forward packets to the external interface even if the packets are not associated with an established connection, which could allow remote attackers to bypass intended filtering.
network
low complexity
brian-bassett
7.5
2003-10-06 CVE-2003-0783 Buffer Overflow vulnerability in Yongguang Zhang Hztty 2.0
Multiple buffer overflows in hztty 2.0 allow local users to gain root privileges.
local
low complexity
yongguang-zhang
7.2
2003-10-06 CVE-2003-0759 Buffer Overflow vulnerability in IBM DB2 Universal Database 7.2
Buffer overflow in db2licm in IBM DB2 Universal Data Base 7.2 before Fixpak 10a allows local users to gain root privileges via a long command line argument.
local
low complexity
ibm
7.2
2003-10-06 CVE-2003-0758 Buffer Overflow vulnerability in IBM DB2 Universal Database 7.2
Buffer overflow in db2dart in IBM DB2 Universal Data Base 7.2 before Fixpak 10 allows local users to gain root privileges via a long command line argument.
local
low complexity
ibm
7.2
2003-10-06 CVE-2003-0742 Unspecified vulnerability in SCO Openserver 5.0.5/5.0.6/5.0.7
SCO Internet Manager (mana) allows local users to execute arbitrary programs by setting the REMOTE_ADDR environment variable to cause menu.mana to run as if it were called from ncsa_httpd, then modifying the PATH environment variable to point to a malicious "hostname" program.
local
low complexity
sco
7.2