2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

CVE IDSeverityCVSSDescription
CVE-2003-1246NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create an...
CVE-2003-1245index2.php in Mambo 4.0.12 allows remote attackers to gain administrator access via a URL request where session_id is se...
CVE-2003-1244SQL injection vulnerability in page_header.php in phpBB 2.0, 2.0.1 and 2.0.2 allows remote attackers to brute force user...
CVE-2003-1243Cross-site scripting vulnerability (XSS) in Sage 1.0 b3 allows remote attackers to insert arbitrary HTML or web script v...
CVE-2003-1242Sage 1.0 b3 allows remote attackers to obtain the root web server path via a URL request for a non-existent module, whic...
CVE-2003-1241Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_...
CVE-2003-1240PHP remote file inclusion vulnerability in CuteNews 0.88 allows remote attackers to execute arbitrary PHP code via a URL...
CVE-2003-1279S-PLUS 6.0 allows local users to overwrite arbitrary files and possibly elevate privileges via a symlink attack on (1) /...
CVE-2003-1238Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authenticat...
CVE-2003-1451Buffer overflow in Symantec Norton AntiVirus 2002 allows remote attackers to execute arbitrary code via an e-mail attach...
CVE-2003-1236Multiple format string vulnerabilities in the logger function in netzio.c for Tanne 0.6.17 allows remote attackers to ex...
CVE-2003-1537Directory traversal vulnerability in PostNuke 0.723 and earlier allows remote attackers to include arbitrary files named...
CVE-2003-1234Integer overflow in the f_count counter in FreeBSD before 4.2 through 5.0 allows local users to cause a denial of servic...
CVE-2003-1232Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, ...
CVE-2003-1231Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 5.5 allows remote attackers to inject arbitrary web sc...
CVE-2003-1280Directory traversal vulnerability in cgihtml 1.69 allows remote attackers to overwrite and create arbitrary files via a ...
CVE-2003-1229X509TrustManager in (1) Java Secure Socket Extension (JSSE) in SDK and JRE 1.4.0 through 1.4.0_01, (2) JSSE before 1.0.3...
CVE-2003-1228Buffer overflow in the prepare_reply function in request.c for Mathopd 1.2 through 1.5b13, and possibly earlier versions...
CVE-2003-1227PHP remote file include vulnerability in index.php for Gallery 1.4 and 1.4-pl1, when running on Windows or in Configurat...
CVE-2003-1281cgihtml 1.69 allows local users to overwrite arbitrary files via a symlink attack on certain temporary files.
CVE-2003-1224Weblogic.admin for BEA WebLogic Server and Express 7.0 and 7.0.0.1 displays the JDBCConnectionPoolRuntimeMBean password ...
CVE-2003-1223The Node Manager for BEA WebLogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of s...
CVE-2003-1222BEA Weblogic Express and Server 8.0 through 8.1 SP 1, when using a foreign Java Message Service (JMS) provider, echoes t...
CVE-2003-1452Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by...
CVE-2003-1282IBM Net.Data allows remote attackers to obtain sensitive information such as path names, server names and possibly user ...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now