Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-08-27 CVE-2003-0654 Unspecified vulnerability in Autorespond 2.0.2
Buffer overflow in autorespond may allow remote attackers to execute arbitrary code as the autorespond user via qmail.
network
low complexity
autorespond
7.5
2003-08-27 CVE-2003-0651 Buffer Overflow vulnerability in MOD Mylo MOD Mylo 0.1/2.0/2.1
Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
network
low complexity
mod-mylo
7.5
2003-08-27 CVE-2003-0650 File Corruption vulnerability in Gamespy Arcade GSAPAK.EXE .APK Extraction
Directory traversal vulnerability in GSAPAK.EXE for GameSpy Arcade, possibly versions before 1.3e, allows remote attackers to overwrite arbitrary files and execute arbitrary code via ..
network
low complexity
gamespy
7.5
2003-08-27 CVE-2003-0649 Unspecified vulnerability in Xpcd
Buffer overflow in xpcd-svga for xpcd 2.08 and earlier allows local users to execute arbitrary code via a long HOME environment variable.
local
low complexity
xpcd
7.2
2003-08-27 CVE-2003-0647 Remote Security vulnerability in IOS
Buffer overflow in the HTTP server for Cisco IOS 12.2 and earlier allows remote attackers to execute arbitrary code via an extremely long (2GB) HTTP GET request.
network
low complexity
cisco
7.5
2003-08-27 CVE-2003-0646 Unspecified vulnerability in Trend Micro Damage Cleanup Server and Housecall
Multiple buffer overflows in ActiveX controls used by Trend Micro HouseCall 5.5 and 5.7, and Damage Cleanup Server 1.0, allow remote attackers to execute arbitrary code via long parameter strings.
network
low complexity
trend-micro
7.5
2003-08-27 CVE-2003-0638 Denial-Of-Service vulnerability in Novell Ichain 2.1
Multiple buffer overflows in Novell iChain 2.1 before Field Patch 3, and iChain 2.2 before Field Patch 1a, allow attackers to cause a denial of service (ABEND) and possibly execute arbitrary code via (1) a long user name or (2) an unknown attack related to a "special script against login."
network
low complexity
novell
7.5
2003-08-27 CVE-2003-0636 Remote Security vulnerability in Novell Ichain 2.2
Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites.
network
low complexity
novell
7.5
2003-08-27 CVE-2003-0634 Buffer Overflow vulnerability in Oracle Database Server EXTPROC
Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, allows authenticated database users, and arbitrary database users in some cases, to execute arbitrary code via a long library name.
network
low complexity
oracle
7.5
2003-08-27 CVE-2003-0632 Remote Security vulnerability in Oracle Applications and E-Business Suite
Buffer overflow in the Oracle Applications Web Report Review (FNDWRR) CGI program (FNDWRR.exe) of Oracle E-Business Suite 11.0 and 11.5.1 through 11.5.8 may allow remote attackers to execute arbitrary code via a long URL.
network
low complexity
oracle
7.5