2003 CVE Vulnerabilities
1,555 CVEs published in 2003.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2003-0784 | — | — | 2.0% | Oct 6, 2003 | Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root priv... |
| CVE-2003-0805 | — | — | 4.8% | Oct 6, 2003 | Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary ... |
| CVE-2003-0803 | — | — | 5.6% | Oct 6, 2003 | Nokia Electronic Documentation (NED) 5.0 allows remote attackers to use NED as an open HTTP proxy via a URL in the locat... |
| CVE-2003-0692 | — | — | 2.7% | Oct 6, 2003 | KDM in KDE 3.1.3 and earlier uses a weak session cookie generation algorithm that does not provide 128 bits of entropy, ... |
| CVE-2003-0690 | — | — | 2.7% | Oct 6, 2003 | KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers t... |
| CVE-2003-0697 | — | — | 0.4% | Oct 6, 2003 | Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with debug enabled, allows l... |
| CVE-2003-0695 | — | — | 3.6% | Oct 6, 2003 | Multiple "buffer management errors" in OpenSSH before 3.7.1 may allow attackers to cause a denial of service or execute ... |
| CVE-2003-1053 | — | — | 0.5% | Oct 3, 2003 | Multiple buffer overflows in XShisen allow attackers to execute arbitrary code via a long (1) -KCONV command line option... |
| CVE-2003-0780 | — | — | 74.6% | Sep 22, 2003 | Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers wit... |
| CVE-2003-0722 | — | — | 87.7% | Sep 22, 2003 | The default installation of sadmind on Solaris uses weak authentication (AUTH_SYS), which allows local and remote attack... |
| CVE-2003-0768 | — | — | 12.9% | Sep 22, 2003 | Microsoft ASP.Net 1.1 allows remote attackers to bypass the Cross-Site Scripting (XSS) and Script Injection protection f... |
| CVE-2003-0769 | — | — | 3.4% | Sep 22, 2003 | Cross-site scripting (XSS) vulnerability in the ICQ Web Front guestbook (guestbook.html) allows remote attackers to inse... |
| CVE-2003-0770 | — | — | 10.8% | Sep 22, 2003 | FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains i... |
| CVE-2003-0771 | — | — | 0.4% | Sep 22, 2003 | Gallery.pm in Apache::Gallery (aka A::G) uses predictable temporary filenames when running Inline::C, which allows local... |
| CVE-2003-0772 | — | — | 72.1% | Sep 22, 2003 | Multiple buffer overflows in WS_FTP 3 and 4 allow remote authenticated users to cause a denial of service and possibly e... |
| CVE-2003-0773 | — | — | 1.9% | Sep 22, 2003 | saned in sane-backends 1.0.7 and earlier does not check the IP address of the connecting host during the SANE_NET_INIT R... |
| CVE-2003-0774 | — | — | 2.0% | Sep 22, 2003 | saned in sane-backends 1.0.7 and earlier does not quickly handle connection drops, which allows remote attackers to caus... |
| CVE-2003-0775 | — | — | 2.0% | Sep 22, 2003 | saned in sane-backends 1.0.7 and earlier calls malloc with an arbitrary size value if a connection is dropped before the... |
| CVE-2003-0776 | — | — | 1.8% | Sep 22, 2003 | saned in sane-backends 1.0.7 and earlier does not properly "check the validity of the RPC numbers it gets before getting... |
| CVE-2003-0777 | — | — | 1.8% | Sep 22, 2003 | saned in sane-backends 1.0.7 and earlier, when debug messages are enabled, does not properly handle dropped connections,... |
| CVE-2003-0778 | — | — | 1.8% | Sep 22, 2003 | saned in sane-backends 1.0.7 and earlier, and possibly later versions, does not properly allocate memory in certain case... |
| CVE-2003-0779 | — | — | 1.4% | Sep 22, 2003 | SQL injection vulnerability in the Call Detail Record (CDR) logging functionality for Asterisk allows remote attackers t... |
| CVE-2003-0693 | — | — | 9.9% | Sep 22, 2003 | A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to exec... |
| CVE-2003-0763 | — | — | 2.6% | Sep 17, 2003 | Cross-site scripting (XSS) vulnerability in Escapade Scripting Engine (ESP) allows remote attackers to inject arbitrary ... |
| CVE-2003-0706 | — | — | 3.3% | Sep 17, 2003 | Unknown vulnerability in mah-jong 1.5.6 and earlier allows remote attackers to cause a denial of service (tight loop). |
Check if your code is affected by 2003 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now