2003 CVE Vulnerabilities
1,555 CVEs published in 2003.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2003-0634 | — | — | 6.9% | Aug 27, 2003 | Stack-based buffer overflow in the PL/SQL EXTPROC functionality for Oracle9i Database Release 2 and 1, and Oracle 8i, al... |
| CVE-2003-0635 | — | — | 1.1% | Aug 27, 2003 | Unknown vulnerability or vulnerabilities in Novell iChain 2.2 before Support Pack 1, with unknown impact, possibly relat... |
| CVE-2003-0422 | — | — | 1.8% | Aug 27, 2003 | Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via... |
| CVE-2003-0625 | HIGH | 7.5 | 7.1% | Aug 27, 2003 | Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malform... |
| CVE-2003-0636 | — | — | 1.2% | Aug 27, 2003 | Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator... |
| CVE-2003-0637 | — | — | 1.5% | Aug 27, 2003 | Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it... |
| CVE-2003-0638 | — | — | 2.5% | Aug 27, 2003 | Multiple buffer overflows in Novell iChain 2.1 before Field Patch 3, and iChain 2.2 before Field Patch 1a, allow attacke... |
| CVE-2003-0639 | — | — | 1.2% | Aug 27, 2003 | Unknown vulnerability in Novell iChain 2.2 before Support Pack 1 allows users to access restricted or secure pages witho... |
| CVE-2003-0187 | — | — | 1.9% | Aug 27, 2003 | The connection tracking core of Netfilter for Linux 2.4.20, with CONFIG_IP_NF_CONNTRACK enabled or the ip_conntrack modu... |
| CVE-2003-0425 | — | — | 1.7% | Aug 27, 2003 | Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to ... |
| CVE-2003-0602 | — | — | 1.2% | Aug 27, 2003 | Multiple cross-site scripting vulnerabilities (XSS) in Bugzilla 2.16.x before 2.16.3 and 2.17.x before 2.17.4 allow remo... |
| CVE-2003-0599 | — | — | 1.8% | Aug 27, 2003 | Unknown vulnerability in the Virtual File System (VFS) capability for phpGroupWare 0.9.16preRC and versions before 0.9.1... |
| CVE-2003-0598 | — | — | — | Aug 27, 2003 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0657. Reason: This candidate is a reservation ... |
| CVE-2003-0426 | — | — | 3.4% | Aug 27, 2003 | The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Set... |
| CVE-2003-1063 | — | — | 1.5% | Aug 20, 2003 | The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite th... |
| CVE-2003-1202 | — | — | 3.6% | Aug 19, 2003 | The checklogin function in omail.pl for omail webmail 0.98.4 and earlier allows remote attackers to execute arbitrary co... |
| CVE-2003-0252 | CRITICAL | 9.8 | 15.8% | Aug 18, 2003 | Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote at... |
| CVE-2003-0590 | — | — | 2.2% | Aug 18, 2003 | Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote attackers to insert arbitrary HTML and web script... |
| CVE-2003-0589 | — | — | 3.1% | Aug 18, 2003 | admin.php in Digi-ads 1.1 allows remote attackers to bypass authentication via a cookie with the username set to the nam... |
| CVE-2003-0588 | — | — | 3.1% | Aug 18, 2003 | admin.php in Digi-news 1.1 allows remote attackers to bypass authentication via a cookie with the username set to the na... |
| CVE-2003-0142 | — | — | 2.2% | Aug 18, 2003 | Adobe Acrobat Reader (acroread) 6, under certain circumstances when running with the "Certified plug-ins only" option di... |
| CVE-2003-0587 | — | — | 0.5% | Aug 18, 2003 | Cross-site scripting (XSS) vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.x allows remote authenticated users ... |
| CVE-2003-0586 | — | — | 5.5% | Aug 18, 2003 | Brooky eStore 1.0.1 through 1.0.2b allows remote attackers to obtain sensitive path information via a direct HTTP reques... |
| CVE-2003-0585 | — | — | 1.5% | Aug 18, 2003 | SQL injection vulnerability in login.asp of Brooky eStore 1.0.1 through 1.0.2b allows remote attackers to bypass authent... |
| CVE-2003-0584 | — | — | 1.0% | Aug 18, 2003 | Format string vulnerability in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows l... |
Check if your code is affected by 2003 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now