2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

CVE IDSeverityCVSSDescription
CVE-2003-1586Cross-site scripting (XSS) vulnerability in WebExpert allows remote attackers to inject arbitrary web script or HTML via...
CVE-2003-1585Cross-site scripting (XSS) vulnerability in WebLogExpert allows remote attackers to inject arbitrary web script or HTML ...
CVE-2003-1584Cross-site scripting (XSS) vulnerability in SurfStats allows remote attackers to inject arbitrary web script or HTML via...
CVE-2003-1583Cross-site scripting (XSS) vulnerability in WebTrends allows remote attackers to inject arbitrary web script or HTML via...
CVE-2003-1582Microsoft Internet Information Services (IIS) 6.0, when DNS resolution is enabled for client IP addresses, allows remote...
CVE-2003-1581The Apache HTTP Server 2.0.44, when DNS resolution is enabled for client IP addresses, allows remote attackers to inject...
CVE-2003-1580The Apache HTTP Server 2.0.44, when DNS resolution is enabled for client IP addresses, uses a logging format that does n...
CVE-2003-1579Sun ONE (aka iPlanet) Web Server 6 on Windows, when DNS resolution is enabled for client IP addresses, uses a logging fo...
CVE-2003-1578Sun ONE (aka iPlanet) Web Server 4.1 through SP12 and 6.0 through SP5, when DNS resolution is enabled for client IP addr...
CVE-2003-1577Sun ONE (aka iPlanet) Web Server 4.1 through SP12 and 6.0 through SP5, when DNS resolution is enabled for client IP addr...
CVE-2003-1576Buffer overflow in pamverifier in Change Manager (CM) 1.0 for Sun Management Center (SunMC) 3.0 on Solaris 8 and 9 on th...
CVE-2003-1575VERITAS File System (VxFS) 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 for Sun Solaris 2.5.1 through 9 does not prop...
CVE-2003-1574TikiWiki 1.6.1 allows remote attackers to bypass authentication by entering a valid username with an arbitrary password,...
CVE-2003-1573The PointBase 4.6 database component in the J2EE 1.4 reference implementation (J2EE/RI) allows remote attackers to execu...
CVE-2003-1572Sun Java Media Framework (JMF) 2.1.1 through 2.1.1c allows unsigned applets to cause a denial of service (JVM crash) and...
CVE-2003-1571Web Wiz Guestbook 6.0 stores sensitive information under the web root with insufficient access control, which allows rem...
CVE-2003-1570The server in IBM Tivoli Storage Manager (TSM) 5.1.x, 5.2.x before 5.2.1.2, and 6.x before 6.1 does not require credenti...
CVE-2003-1569GoAhead WebServer before 2.1.5 on Windows 95, 98, and ME allows remote attackers to cause a denial of service (daemon cr...
CVE-2003-1568GoAhead WebServer before 2.1.6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon...
CVE-2003-1567HIGH7.5The undocumented TRACK method in Microsoft Internet Information Services (IIS) 5.0 returns the content of the original r...
CVE-2003-1566Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote a...
CVE-2003-1021The scosession program in OpenServer 5.0.6 and 5.0.7 allows local users to gain privileges via crafted strings on the co...
CVE-2003-1208Multiple buffer overflows in Oracle 9i 9 before 9.2.0.3 allow local users to execute arbitrary code by (1) setting the T...
CVE-2003-0718The WebDAV Message Handler for Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows remote attackers to cause a ...
CVE-2003-1015Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME ...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now