Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-04-02 CVE-2003-0172 Buffer Overflow vulnerability in PHP 4.3.1
Buffer overflow in openlog function for PHP 4.3.1 on Windows operating system, and possibly other OSes, allows remote attackers to cause a crash and possibly execute arbitrary code via a long filename argument.
network
low complexity
php
7.5
2003-04-02 CVE-2003-0168 Unspecified vulnerability in Apple Quicktime 5.0/6.0
Buffer overflow in Apple QuickTime Player 5.x and 6.0 for Windows allows remote attackers to execute arbitrary code via a long QuickTime URL.
network
low complexity
apple
7.5
2003-04-02 CVE-2003-0167 Remote Folder Buffer Overflow vulnerability in Mutt IMAP
Multiple off-by-one buffer overflows in the IMAP capability for Mutt 1.3.28 and earlier, and Balsa 1.2.4 and earlier, allow a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a specially crafted mail folder, a different vulnerability than CVE-2003-0140.
network
low complexity
mutt
7.5
2003-04-02 CVE-2003-0166 Unspecified vulnerability in PHP
Integer signedness error in emalloc() function for PHP before 4.3.2 allow remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via negative arguments to functions such as (1) socket_recv, (2) socket_recvfrom, and possibly other functions.
network
low complexity
php
7.5
2003-04-02 CVE-2003-0162 Unspecified vulnerability in Ecartis 1.0.0Snapshot20021013
Ecartis 1.0.0 (formerly listar) before snapshot 20030227 allows remote attackers to reset passwords of other users and gain privileges by modifying hidden form fields in the HTML page.
network
low complexity
ecartis
7.5
2003-04-02 CVE-2003-0152 Remote Command Execution vulnerability in Mozilla Bonsai 1.3
Unknown vulnerability in bonsai Mozilla CVS query tool allows remote attackers to execute arbitrary commands as the www-data user.
network
low complexity
mozilla
7.5
2003-04-02 CVE-2003-0106 Unspecified vulnerability in Symantec Enterprise Firewall 7.0
The HTTP proxy for Symantec Enterprise Firewall (SEF) 7.0 allows proxy users to bypass pattern matching for blocked URLs via requests that are URL-encoded with escapes, Unicode, or UTF-8.
network
low complexity
symantec
7.5
2003-04-02 CVE-2003-0092 Buffer Overflow vulnerability in SUN Solaris and Sunos
Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.
local
low complexity
sun
7.2
2003-04-02 CVE-2003-0091 Unspecified vulnerability in SUN Solaris and Sunos
Stack-based buffer overflow in the bsd_queue() function for lpq on Solaris 2.6 and 7 allows local users to gain root privilege.
local
low complexity
sun
7.2
2003-04-02 CVE-2002-1524 Buffer Overflow vulnerability in Nullsoft Winamp 3.0
Buffer overflow in XML parser in wsabi.dll of Winamp 3 (1.0.0.488) allows remote attackers to execute arbitrary code via a skin file (.wal) with a long include file tag.
network
low complexity
nullsoft
7.5