Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-11-04 CVE-2003-1141 Remote Buffer Overrun vulnerability in Network Instruments Niprint Lpd-Lpr Print Server 4.10
Buffer overflow in NIPrint 4.10 allows remote attackers to execute arbitrary code via a long string to TCP port 515.
network
low complexity
network-instruments
7.5
2003-11-03 CVE-2003-1196 SQL Injection vulnerability in Vienuke Vieboard 2.6/2.6Beta1
SQL injection vulnerability in viewtopic.asp in VieBoard 2.6 allows remote attackers to execute arbitrary SQL commands via the forumid parameter.
network
low complexity
vienuke
7.5
2003-11-03 CVE-2003-1193 SQL Injection vulnerability in Oracle9iAS Portal Component
Multiple SQL injection vulnerabilities in the Portal DB (1) List of Values (LOVs), (2) Forms, (3) Hierarchy, and (4) XML components packages in Oracle Oracle9i Application Server 9.0.2.00 through 3.0.9.8.5 allow remote attackers to execute arbitrary SQL commands via the URL.
network
low complexity
oracle
7.5
2003-11-03 CVE-2003-1185 SQL Injection vulnerability in ThWboard
Multiple SQL injection vulnerabilities in ThWboard before Beta 2.8.2 allow remote attackers to inject arbitrary SQL commands via various vectors including (1) Admin-Center, (2) Announcements, (3) admin/calendar.php, and (4) showevent.php.
network
low complexity
thwboard
7.5
2003-11-03 CVE-2003-0901 Buffer Overflow vulnerability in PostgreSQL To_Ascii()
Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x before 7.3.4, allows remote attackers to execute arbitrary code.
network
low complexity
postgresql
7.5
2003-11-03 CVE-2003-0881 Remote Security vulnerability in Mac OS X
Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password.
network
low complexity
apple
7.5
2003-11-03 CVE-2003-0871 Apple Quicktime Java vulnerability in Apple Mac OS X 10.3
Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system."
network
low complexity
apple
7.5
2003-11-03 CVE-2003-0855 Unspecified vulnerability in Charles Kerr PAN
Pan 0.13.3 and earlier allows remote attackers to cause a denial of service (crash) via a news post with a long author email address.
network
low complexity
charles-kerr
7.8
2003-11-03 CVE-2003-0683 Unspecified vulnerability in SGI Irix 6.5.21F/6.5.21M
NFS in SGI 6.5.21m and 6.5.21f does not perform access checks in certain configurations when an /etc/exports entry uses wildcards without any hostnames or groups, which could allow attackers to bypass intended restrictions.
network
low complexity
sgi
7.5
2003-11-03 CVE-2002-1570 Remote Heap Overflow vulnerability in Net-SNMP snmpnetstat
Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of an array.
network
low complexity
ucd-snmp
7.5