Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-06-06 CVE-2003-1068 Buffer Overflow vulnerability in SUN Solaris and Sunos
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4659277, a different vulnerability than CVE-2003-1082.
local
low complexity
sun
7.2
2003-05-27 CVE-2003-0271 Remote Security vulnerability in Personal Ftp Server
Buffer overflow in Personal FTP Server allows remote attackers to execute arbitrary code via a long USER argument.
network
low complexity
cooolsoft
7.5
2003-05-27 CVE-2003-0269 Buffer Overflow vulnerability in Youbin HOME
Buffer overflow in youbin allows local users to gain privileges via a long HOME environment variable.
local
low complexity
youbin
7.2
2003-05-27 CVE-2003-0266 Denial-Of-Service vulnerability in Bvrp Software Slwebmail 3.0
Multiple buffer overflows in SLWebMail 3 on Windows systems allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long Language parameter to showlogin.dll, (2) a long CompanyID parameter to recman.dll, (3) a long CompanyID parameter to admin.dll, or (4) a long CompanyID parameter to globallogin.dll.
network
low complexity
bvrp-software
7.5
2003-05-27 CVE-2003-0264 Unspecified vulnerability in Seattle LAB Software Slmail 5.1.0.4420
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.
network
low complexity
seattle-lab-software
7.5
2003-05-27 CVE-2003-0263 Buffer Overflow vulnerability in Floosietek Ftgatepro 1.221328
Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.
network
low complexity
floosietek
7.5
2003-05-27 CVE-2003-0262 Multiple Unspecified vulnerability in Leksbot 1.2
leksbot 1.2.3 in Debian GNU/Linux installs the KATAXWR as setuid root, which allows local users to gain root privileges by exploiting unknown vulnerabilities related to the escalated privileges, which KATAXWR is not designed to have.
local
low complexity
leksbot
7.2
2003-05-27 CVE-2003-0258 Remote Security vulnerability in VPN 3000 Concentrator
Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 3.5.x through 4.0.REL, when enabling IPSec over TCP for a port on the concentrator, allow remote attackers to reach the private network without authentication.
network
low complexity
cisco
7.5
2003-05-27 CVE-2003-0256 Unspecified vulnerability in KDE Kopete 0.6.1
The GnuPG plugin in kopete before 0.6.2 does not properly cleanse the command line when executing gpg, which allows remote attackers to execute arbitrary commands.
network
low complexity
kde
7.5
2003-05-27 CVE-2003-0243 Unspecified vulnerability in Happycgi Happymall 4.3/4.4
Happycgi.com Happymall 4.3 and 4.4 allows remote attackers to execute arbitrary commands via shell metacharacters in the file parameter for the (1) normal_html.cgi or (2) member_html.cgi scripts.
network
low complexity
happycgi
7.5