2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2003-1248H-Sphere WebShell 2.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) mode and...
CVE-2003-1250Efficient Networks 5861 DSL router, when running firmware 5.3.80 configured to block incoming TCP SYN, packets allows re...
CVE-2003-1249WebIntelligence 2.7.1 uses guessable user session cookies, which allows remote attackers to hijack sessions.
CVE-2003-1252register.php in S8Forum 3.0 allows remote attackers to execute arbitrary PHP commands by creating a user whose name ends...
CVE-2003-0627psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to cause a denial of service (applicatio...
CVE-2003-1127Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via ...
CVE-2003-1247Multiple buffer overflows in H-Sphere WebShell 2.3 allow remote attackers to execute arbitrary code via (1) a long URL c...
CVE-2003-1253PHP remote file inclusion vulnerability in Bookmark4U 1.8.3 allows remote attackers to execute arbitrary PHP code viaa U...
CVE-2003-1243Cross-site scripting vulnerability (XSS) in Sage 1.0 b3 allows remote attackers to insert arbitrary HTML or web script v...
CVE-2003-1244SQL injection vulnerability in page_header.php in phpBB 2.0, 2.0.1 and 2.0.2 allows remote attackers to brute force user...
CVE-2003-1242Sage 1.0 b3 allows remote attackers to obtain the root web server path via a URL request for a non-existent module, whic...
CVE-2003-1245index2.php in Mambo 4.0.12 allows remote attackers to gain administrator access via a URL request where session_id is se...
CVE-2003-1128XMMS.pm in X2 XMMS Remote, as obtained from the vendor server between 4 AM 11 AM PST on May 7, 2003, allows remote attac...
CVE-2003-1240PHP remote file inclusion vulnerability in CuteNews 0.88 allows remote attackers to execute arbitrary PHP code via a URL...
CVE-2003-0249PHP treats unknown methods such as "PoSt" as a GET request, which could allow attackers to intended access restrictions ...
CVE-2003-1241Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_...
CVE-2003-1246NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create an...
CVE-2003-1251The (1) menu.inc.php, (2) datasets.php and (3) mass_operations.inc.php (mistakenly referred to as mass_opeations.inc.php...
CVE-2003-1254Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to execute arbitrary PHP code via (1) head.php, (2) apb_common...
CVE-2003-1280Directory traversal vulnerability in cgihtml 1.69 allows remote attackers to overwrite and create arbitrary files via a ...
CVE-2003-1232Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, ...
CVE-2003-1234Integer overflow in the f_count counter in FreeBSD before 4.2 through 5.0 allows local users to cause a denial of servic...
CVE-2003-1166Directory traversal vulnerability in (1) Openfile.aspx and (2) Html.aspx in HTTP Commander 4.0 allows remote attackers t...
CVE-2003-1557Off-by-one buffer overflow in spamc of SpamAssassin 2.40 through 2.43, when using BSMTP mode ("-B"), allows remote attac...
CVE-2003-1231Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 5.5 allows remote attackers to inject arbitrary web sc...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now