Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-03-31 CVE-2003-0146 Buffer Overflow vulnerability in Multiple Netpbm
Multiple vulnerabilities in NetPBM 9.20 and earlier, and possibly other versions, may allow remote attackers to cause a denial of service or execute arbitrary code via "maths overflow errors" such as (1) integer signedness errors or (2) integer overflows, which lead to buffer overflows.
network
low complexity
netpbm
7.5
2003-03-31 CVE-2003-0144 Local Buffer Overflow vulnerability in Multiple Vendor LPRM
Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via long command line arguments such as (1) request ID or (2) user name.
local
low complexity
lprold bsd freebsd openbsd
7.2
2003-03-31 CVE-2003-0127 Unspecified vulnerability in Linux Kernel
The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.
local
low complexity
linux
7.2
2003-03-31 CVE-2003-0080 Unspecified vulnerability in Gnome Gnome-Lokkit 0.5021
The iptables ruleset in Gnome-lokkit in Red Hat Linux 8.0 does not include any rules in the FORWARD chain, which could allow attackers to bypass intended access restrictions if packet forwarding is enabled.
network
low complexity
gnome
7.5
2003-03-31 CVE-2002-1553 Unspecified vulnerability in Cisco Optical Networking Systems Software
Cisco ONS15454 and ONS15327 running ONS before 3.4 allows remote attackers to modify the system configuration and delete files by establishing an FTP connection to the TCC, TCC+ or XTC using a username and password that does not exist.
network
low complexity
cisco
7.5
2003-03-31 CVE-2002-1552 Unspecified vulnerability in Novell Edirectory
Novell eDirectory (eDir) 8.6.2 and Netware 5.1 eDir 85.x allows users with expired passwords to gain inappropriate permissions when logging in from Remote Manager.
network
low complexity
novell
7.5
2003-03-31 CVE-2002-1549 Buffer Overflow vulnerability in Light Httpd Light Httpd 0.1
Buffer overflow in Light HTTPd (lhttpd) 0.1 allows remote attackers to execute arbitrary code via a long HTTP GET request.
network
low complexity
light-httpd
7.5
2003-03-31 CVE-2002-1548 Local Security vulnerability in IBM AIX and Autofs
Unknown vulnerability in autofs on AIX 4.3.0, when using executable maps, allows attackers to execute arbitrary commands as root, possibly related to "string handling around how the executable map is called."
local
low complexity
ibm
7.2
2003-03-31 CVE-2002-1546 Unspecified vulnerability in BRS Webweaver 1.0.1
BRS WebWeaver Web Server 1.01 allows remote attackers to bypass password protections for files and directories via an HTTP request containing a "/./" sequence.
network
low complexity
brs
7.5
2003-03-31 CVE-2002-1541 Unspecified vulnerability in Working Resources Inc. Badblue 1.7.0
BadBlue 1.7 allows remote attackers to bypass password protections for directories and files via an HTTP request containing an extra / (slash).
network
low complexity
working-resources-inc
7.5