2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

CVE IDSeverityCVSSDescription
CVE-2003-1396Heap-based buffer overflow in Opera 6.05 through 7.10 allows remote attackers to cause a denial of service (crash) and p...
CVE-2003-1370Multiple cross-site scripting (XSS) vulnerabilities in Nuked-Klan 1.2b allow remote attackers to inject arbitrary HTML o...
CVE-2003-1369Buffer overflow in ByteCatcher FTP client 1.04b allows remote attackers to cause a denial of service (crash) and possibl...
CVE-2003-1368Buffer overflow in the 32bit FTP client 9.49.1 allows remote attackers to cause a denial of service (crash) and possibly...
CVE-2003-1397The PluginContext object of Opera 6.05 and 7.0 allows remote attackers to cause a denial of service (crash) via an HTTP ...
CVE-2003-1398Cisco IOS 12.0 through 12.2, when IP routing is disabled, accepts false ICMP redirect messages, which allows remote atta...
CVE-2003-1399eject 2.0.10, when installed setuid on systems such as SuSE Linux 7.3, generates different error messages depending on w...
CVE-2003-1510TinyWeb 1.9 allows remote attackers to cause a denial of service (CPU consumption) via a ".%00." in an HTTP GET request ...
CVE-2003-1511Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inje...
CVE-2003-1562sshd in OpenSSH 3.6.1p2 and earlier, when PermitRootLogin is disabled and using PAM keyboard-interactive authentication,...
CVE-2003-1400Cross-site scripting (XSS) vulnerability in the Your_Account module for PHP-Nuke 5.0 through 6.0 allows remote attackers...
CVE-2003-1401login.php in php-Board 1.0 stores plaintext passwords in $username.txt with insufficient access control under the web do...
CVE-2003-1512Buffer overflow in mIRC 6.1 and 6.11 allows remote attackers to cause a denial of service (crash) via a long DCC SEND re...
CVE-2003-1402PHP remote file inclusion vulnerability in hit.php for Kietu 2.0 and 2.3 allows remote attackers to execute arbitrary PH...
CVE-2003-1403foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpi...
CVE-2003-1513Multiple cross-site scripting (XSS) vulnerabilities in example scripts in Caucho Technology Resin 2.0 through 2.1.2 allo...
CVE-2003-1404DotBr 0.1 stores config.inc with insufficient access control under the web document root, which allows remote attackers ...
CVE-2003-1405DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1) exec.php3 or (2) syst...
CVE-2003-1406PHP remote file inclusion vulnerability in D-Forum 1.00 through 1.11 allows remote attackers to execute arbitrary PHP co...
CVE-2003-1407Buffer overflow in cmd.exe in Windows NT 4.0 may allow local users to execute arbitrary code via a long pathname argumen...
CVE-2003-1514eMule 0.29c allows remote attackers to cause a denial of service (crash) via a long password, possibly due to a buffer o...
CVE-2003-1515Origo ASR-8100 ADSL Router 3.21 has an administration service running on port 254 that does not require a password, whic...
CVE-2003-1408Lotus Domino Server 5.0 and 6.0 allows remote attackers to read the source code for files via an HTTP request with a fil...
CVE-2003-1409TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter t...
CVE-2003-1516The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to ...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now