2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

CVE IDSeverityCVSSDescription
CVE-2003-1246——NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create an...
CVE-2003-1245——index2.php in Mambo 4.0.12 allows remote attackers to gain administrator access via a URL request where session_id is se...
CVE-2003-1244——SQL injection vulnerability in page_header.php in phpBB 2.0, 2.0.1 and 2.0.2 allows remote attackers to brute force user...
CVE-2003-1243——Cross-site scripting vulnerability (XSS) in Sage 1.0 b3 allows remote attackers to insert arbitrary HTML or web script v...
CVE-2003-1242——Sage 1.0 b3 allows remote attackers to obtain the root web server path via a URL request for a non-existent module, whic...
CVE-2003-1241——Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_...
CVE-2003-1240——PHP remote file inclusion vulnerability in CuteNews 0.88 allows remote attackers to execute arbitrary PHP code via a URL...
CVE-2003-1279——S-PLUS 6.0 allows local users to overwrite arbitrary files and possibly elevate privileges via a symlink attack on (1) /...
CVE-2003-1238——Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authenticat...
CVE-2003-1451——Buffer overflow in Symantec Norton AntiVirus 2002 allows remote attackers to execute arbitrary code via an e-mail attach...
CVE-2003-1236——Multiple format string vulnerabilities in the logger function in netzio.c for Tanne 0.6.17 allows remote attackers to ex...
CVE-2003-1537——Directory traversal vulnerability in PostNuke 0.723 and earlier allows remote attackers to include arbitrary files named...
CVE-2003-1234——Integer overflow in the f_count counter in FreeBSD before 4.2 through 5.0 allows local users to cause a denial of servic...
CVE-2003-1232——Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, ...
CVE-2003-1231——Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 5.5 allows remote attackers to inject arbitrary web sc...
CVE-2003-1280——Directory traversal vulnerability in cgihtml 1.69 allows remote attackers to overwrite and create arbitrary files via a ...
CVE-2003-1229——X509TrustManager in (1) Java Secure Socket Extension (JSSE) in SDK and JRE 1.4.0 through 1.4.0_01, (2) JSSE before 1.0.3...
CVE-2003-1228——Buffer overflow in the prepare_reply function in request.c for Mathopd 1.2 through 1.5b13, and possibly earlier versions...
CVE-2003-1227——PHP remote file include vulnerability in index.php for Gallery 1.4 and 1.4-pl1, when running on Windows or in Configurat...
CVE-2003-1281——cgihtml 1.69 allows local users to overwrite arbitrary files via a symlink attack on certain temporary files.
CVE-2003-1224——Weblogic.admin for BEA WebLogic Server and Express 7.0 and 7.0.0.1 displays the JDBCConnectionPoolRuntimeMBean password ...
CVE-2003-1223——The Node Manager for BEA WebLogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of s...
CVE-2003-1222——BEA Weblogic Express and Server 8.0 through 8.1 SP 1, when using a foreign Java Message Service (JMS) provider, echoes t...
CVE-2003-1452——Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by...
CVE-2003-1282——IBM Net.Data allows remote attackers to obtain sensitive information such as path names, server names and possibly user ...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now