2003 CVE Vulnerabilities
1,555 CVEs published in 2003.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2003-1524 | — | — | 0.3% | Dec 31, 2003 | PGPi PGPDisk 6.0.2i does not unmount a PGP partition when the switch user function in Windows XP is used, which could al... |
| CVE-2003-1428 | — | — | 0.5% | Dec 31, 2003 | Gallery 1.3.3 creates directories with insecure permissions, which allows local users to read, modify, or delete photos. |
| CVE-2003-1429 | — | — | 2.8% | Dec 31, 2003 | Buffer overflow in Proxomitron Naoko 4.4 allows remote attackers to execute arbitrary code via a long request. |
| CVE-2003-1430 | — | — | 2.8% | Dec 31, 2003 | Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known fi... |
| CVE-2003-1431 | — | — | 5.2% | Dec 31, 2003 | Buffer overflow in Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (crash... |
| CVE-2003-1525 | — | — | 1.4% | Dec 31, 2003 | Unspecified vulnerability in My Photo Gallery 3.5, and possibly earlier versions, has unknown impact and attack vectors. |
| CVE-2003-1526 | — | — | 1.0% | Dec 31, 2003 | PHP-Nuke 7.0 allows remote attackers to obtain the installation path via certain characters such as (1) ", (2) ', or (3)... |
| CVE-2003-1527 | — | — | 1.2% | Dec 31, 2003 | BlackICE Defender 2.9.cap and Server Protection 3.5.cdf, when configured to automatically block attacks, allows remote a... |
| CVE-2003-1563 | — | — | 0.3% | Dec 31, 2003 | Sun Cluster 2.2 through 3.2 for Oracle Parallel Server / Real Application Clusters (OPS/RAC) allows local users to cause... |
| CVE-2003-1432 | — | — | 7.5% | Dec 31, 2003 | Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (CPU consumption or crash... |
| CVE-2003-1433 | — | — | 1.2% | Dec 31, 2003 | Epic Games Unreal Engine 226f through 436 does not validate the challenge key, which allows remote attackers to exhaust ... |
| CVE-2003-1528 | — | — | 0.4% | Dec 31, 2003 | nsr_shutdown in Fujitsu Siemens NetWorker 6.0 allows local users to overwrite arbitrary files via a symlink attack on th... |
| CVE-2003-1434 | — | — | 1.1% | Dec 31, 2003 | login_ldap 3.1 and 3.2 allows remote attackers to initiate unauthenticated bind requests if (1) bind_anon_dn is on, whic... |
| CVE-2003-1435 | — | — | 1.7% | Dec 31, 2003 | SQL injection vulnerability in PHP-Nuke 5.6 and 6.0 allows remote attackers to execute arbitrary SQL commands via the da... |
| CVE-2003-1529 | — | — | 1.8% | Dec 31, 2003 | Directory traversal vulnerability in Seagull Software Systems J Walk application server 3.2C9, and other versions before... |
| CVE-2003-1436 | — | — | 2.1% | Dec 31, 2003 | PHP remote file inclusion vulnerability in nukebrowser.php in Nukebrowser 2.1 to 2.5 allows remote attackers to execute ... |
| CVE-2003-1437 | — | — | 0.2% | Dec 31, 2003 | BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store... |
| CVE-2003-1438 | — | — | 0.7% | Dec 31, 2003 | Race condition in BEA WebLogic Server and Express 5.1 through 7.0.0.1, when using in-memory session replication or repli... |
| CVE-2003-1439 | — | — | 1.0% | Dec 31, 2003 | Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores passwords and sessions in plaintext in memory, which c... |
| CVE-2003-1530 | — | — | 1.1% | Dec 31, 2003 | SQL injection vulnerability in privmsg.php in phpBB 2.0.3 and earlier allows remote attackers to execute arbitrary SQL c... |
| CVE-2003-1531 | — | — | 1.3% | Dec 31, 2003 | Cross-site scripting (XSS) vulnerability in testcgi.exe in Lilikoi Software Ceilidh 2.70 and earlier allows remote attac... |
| CVE-2003-1440 | — | — | 1.2% | Dec 31, 2003 | SpamProbe 0.8a allows remote attackers to cause a denial of service (crash) via HTML e-mail with newline characters with... |
| CVE-2003-1441 | — | — | 1.2% | Dec 31, 2003 | Posadis 0.50.4 through 0.50.8 allows remote attackers to cause a denial of service (crash) via a DNS message without a q... |
| CVE-2003-1532 | — | — | 1.0% | Dec 31, 2003 | SQL injection vulnerability in compte.php in PhpMyShop 1.00 allows remote attackers to execute arbitrary SQL commands vi... |
| CVE-2003-1442 | — | — | 2.6% | Dec 31, 2003 | The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remot... |
Check if your code is affected by 2003 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now