2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

CVE IDSeverityCVSSDescription
CVE-2003-1294Xscreensaver before 4.15 creates temporary files insecurely in (1) driver/passwd-kerberos.c, (2) driver/xscreensaver-get...
CVE-2003-1543Cross-site scripting (XSS) vulnerability in Bajie Http Web Server 0.95zxe, 0.95zxc, and possibly others, allows remote a...
CVE-2003-0317iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded chara...
CVE-2003-1532SQL injection vulnerability in compte.php in PhpMyShop 1.00 allows remote attackers to execute arbitrary SQL commands vi...
CVE-2003-1228Buffer overflow in the prepare_reply function in request.c for Mathopd 1.2 through 1.5b13, and possibly earlier versions...
CVE-2003-1227PHP remote file include vulnerability in index.php for Gallery 1.4 and 1.4-pl1, when running on Windows or in Configurat...
CVE-2003-1233CRITICAL9.8Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to by...
CVE-2003-1131PHP remote file inclusion vulnerability in index.php in KnowledgeBuilder, referred to as KnowledgeBase, allows remote at...
CVE-2003-1132The DNS server for Cisco Content Service Switch (CSS) 11000 and 11500, when prompted for a nonexistent AAAA record, resp...
CVE-2003-1517cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, whi...
CVE-2003-1234Integer overflow in the f_count counter in FreeBSD before 4.2 through 5.0 allows local users to cause a denial of servic...
CVE-2003-1133Rit Research Labs The Bat! 1.0.11 through 2.0 creates new accounts with insecure ACLs, which allows local users to read ...
CVE-2003-1130Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-1071. Reason: This candidate is a duplicate of...
CVE-2003-1235BRW WebWeaver 1.03 allows remote attackers to obtain sensitive server environment information via a URL request for test...
CVE-2003-1403foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpi...
CVE-2003-1239Directory traversal vulnerability in sendphoto.php in WihPhoto 0.86 allows remote attackers to read arbitrary files via ...
CVE-2003-1238Cross-site scripting vulnerability (XSS) in Nuked-Klan 1.3 beta and earlier allows remote attackers to steal authenticat...
CVE-2003-1521Sun Java Plug-In 1.4 through 1.4.2_02 allows remote attackers to repeatedly access the floppy drive via the createXmlDoc...
CVE-2003-1351Directory traversal vulnerability in edittag.cgi in EditTag 1.1 allows remote attackers to read arbitrary files via a "%...
CVE-2003-1309The DeviceIoControl function in the TrueVector Device Driver (VSDATANT) in ZoneAlarm before 3.7.211, Pro before 4.0.146....
CVE-2003-1417nCipher Support Software 6.00, when using generatekey KeySafe to import keys, does not delete the temporary copies of th...
CVE-2003-1240PHP remote file inclusion vulnerability in CuteNews 0.88 allows remote attackers to execute arbitrary PHP code via a URL...
CVE-2003-1246NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create an...
CVE-2003-1330Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote att...
CVE-2003-1129Buffer overflow in the Yahoo! Audio Conferencing (aka Voice Chat) ActiveX control before 1,0,0,45 allows remote attacker...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now