Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2003-08-18 CVE-2003-0583 Local Security vulnerability in BRU
Buffer overflow in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows local users to execute arbitrary code via a long command line argument.
local
low complexity
tolis-group
7.2
2003-08-18 CVE-2003-0581 Unspecified vulnerability in Xfstt 1.2.1/1.4
X Fontserver for Truetype fonts (xfstt) 1.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a (1) FS_QueryXExtents8 or (2) FS_QueryXBitmaps8 packet, and possibly other types of packets, with a large num_ranges value, which causes an out-of-bounds array access.
network
low complexity
xfstt
7.5
2003-08-18 CVE-2003-0580 Local Security vulnerability in IBM U2 Universe 10.0.0.9
Buffer overflow in uvadmsh in IBM U2 UniVerse 10.0.0.9 and earlier allows the uvadm user to execute arbitrary code via a long -uv.install command line argument.
local
low complexity
ibm
7.2
2003-08-18 CVE-2003-0578 Link Following vulnerability in IBM U2 Universe 10.0.0.9
cci_dir in IBM U2 UniVerse 10.0.0.9 and earlier creates hard links and unlinks files as root, which allows local users to gain privileges by deleting and overwriting arbitrary files.
local
low complexity
ibm CWE-59
7.8
2003-08-18 CVE-2003-0577 Unspecified vulnerability in Mpg123 0.59R/Pre0.59S
mpg123 0.59r allows remote attackers to cause a denial of service and possibly execute arbitrary code via an MP3 file with a zero bitrate, which creates a negative frame size.
network
low complexity
mpg123
7.5
2003-08-18 CVE-2003-0574 Unspecified vulnerability in SGI Irix
Unknown vulnerability in SGI IRIX 6.5.x through 6.5.20, and possibly earlier versions, allows local users to cause a core dump in scheme and possibly gain privileges via certain environment variables, a different vulnerability than CVE-2001-0797 and CVE-1999-0028.
local
low complexity
sgi
7.2
2003-08-18 CVE-2003-0567 Improper Input Validation vulnerability in Cisco products
Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 packets to an interface on the device, causing the input queue on that interface to be marked as full.
network
low complexity
cisco CWE-20
7.8
2003-08-18 CVE-2003-0561 Remote Security vulnerability in Iglooftp PRO 3.8
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP banner, or long responses to the client commands (2) USER, (3) PASS, (4) ACCT, and possibly other commands.
network
low complexity
iglooftp
7.5
2003-08-18 CVE-2003-0559 Remote Security vulnerability in PHPforum 2.0Rc1
mainfile.php in phpforum 2 RC-1, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code by modifying the MAIN_PATH parameter to reference a URL on a remote web server that contains the code.
network
low complexity
phpforum
7.5
2003-08-18 CVE-2003-0558 Remote Security vulnerability in Leapware Leapftp 2.7.3.600
Buffer overflow in LeapFTP 2.7.3.600 allows remote FTP servers to execute arbitrary code via a long IP address response to a PASV request.
network
low complexity
leapware
7.5