Vulnerabilities > Vignette

DATE CVE VULNERABILITY TITLE RISK
2003-06-30 CVE-2003-0401 Unspecified vulnerability in Vignette Content Suite, Storyserver and Vignette
Vignette StoryServer and Vignette V/5 allows remote attackers to obtain sensitive information via a request for the /vgn/style template.
network
low complexity
vignette
5.0
2003-06-30 CVE-2003-0400 Unspecified vulnerability in Vignette Content Suite, Storyserver and Vignette
Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to return unauthorized portions of memory, as demonstrated using the "-->" string in a CookieName argument to the login template, referred to as a "memory leak" in some reports.
network
low complexity
vignette
5.0