| OSVDB ID | Disclosure Date | Title |
|
2762
Description:
Citrix MetaFrame XP version 1.0 contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "NFuse_Message" variable parameters when generating error messages. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-10-31
|
Citrix MetaFrame XP login.asp NFuse_Message Parameter XSS
|
|
25743
Description:
(Description Provided by CVE) : Xscreensaver before 4.15 creates temporary files insecurely in (1) driver/passwd-kerberos.c, (2) driver/xscreensaver-getimage-video, (3) driver/xscreensaver.kss.in, and the (4) vidwhacker and (5) webcollage screensavers, which allows local users to overwrite arbitrary files via a symlink attack.
|
2003-10-31
|
XScreenSaver Multiple Symlink Arbitrary File Overwrite
|
|
2739
Description:
LedForums contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "top_message" variable upon submission to the index.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-10-31
|
LedForums index.php Multiple Parameter XSS
|
|
18724
Description:
Tivoli SecureWay WebSEAL contains a flaw that may allow a malicious user to perform cross-site scripting attacks without detection. The issue is triggered when WebSEAL fails to log cross-site scripting attacks when there is a "?" in the URI. It is possible that the flaw may allow cross-site scripting attacks to be undetected resulting in a loss of integrity.
|
2003-10-31
|
IBM Tivoli SecureWay WebSEAL XSS Attempt Logging Failure
|
|
2764
Description:
The Plug and Play Software Web Server Proxy Service contains a flaw that may allow a remote denial of service. The issue is triggered when specially crafted GET request is sent to TCP port 8080, and will result in loss of availability for the Proxy Service.
|
2003-10-31
|
Plug and Play Web Server Proxy Service HTTP Request Handling DoS
|
|
3417
Description:
BEA WebLogic contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "person" variable upon submission to the InteractiveQuery.jsp script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-10-31
|
BEA WebLogic InteractiveQuery.jsp XSS
|
|
2740
Description:
Booby prior to version 0.2.4 contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate user input upon submission. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-10-30
|
Booby Error Message XSS
|
|
2741
Description:
The Bea Tuxedo and WebLogic Enterprise administration console contains a flaw that allows an unauthenticated remote user to determine whether a given local file exists, perform a XSS attack, and potentially crash the server process. This flaw exists because the application does not validate the INIFILE variable upon submission to the admin console CGI script. This could allow a user to create a specially crafted URL that would execute arbitrary code in an administrative user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-10-30
|
BEA Admin Console INIFILE Validation Issues
|
|
2783
Description:
Microsoft Internet Explorer contains flaws that may allow a malicious user to access any resource that is in the Local Zone. The issue is triggered when Internet Explorer accesses a malicious HTML document. It is possible that the flaw may allow resource access in the Local Zone resulting in a loss of confidentiality, integrity, and/or availability.
|
2003-10-30
|
Microsoft IE XML Objection Information Disclosure (IredirNrefresh)
|
|
2738
Description:
Unknown / Incomplete
|
2003-10-30
|
Simple Web Server (SWS) Referer Header Overflow
|
|
2742
Description:
Kpopup contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicous user changes the PATH environment variable to include a hostile 'killall' binary before the system path. This flaws may be abused to execute arbitrary code as the root user.
|
2003-10-30
|
KPopup main.cpp Insecure Path Privilege Escalation
|
|
3290
Description:
Kpopup contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicous user passes a carefully crafted format string argument to the kpopup executable. This flaws may be abused to execute arbitrary code as the root user.
|
2003-10-30
|
KPopup main.cpp Format String Privilege Escalation
|
|
2737
Description:
Unknown / Incomplete
|
2003-10-30
|
PostgreSQL pg_to_ascii() Overflow
|
|
2736
Description:
(Description Provided by CVE) : Buffer overflow in the portmapper service (PMAP.NLM) in Novell NetWare 6 SP3 and ZenWorks for Desktops 3.2 SP2 through 4.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via unknown attack vectors.
|
2003-10-30
|
Novell NetWare Port Mapper Service (PMAP.NLM) Unspecified Remote Overflow
|
|
2735
Description:
(Description Provided by CVE) : Buffer overflow in Musicqueue 1.2.0 allows local users to execute arbitrary code via a long language variable in the configuration file.
|
2003-10-30
|
Musicqueue Configuration File Language Variable Local Overflow
|
|
45124
Description:
Unknown / Incomplete
|
2003-10-30
|
Khazad Algorithm (3-5 Round) Extended Square Attack Cryptanalysis Weakness
|
|
7910
Description:
Microsoft Internet Explorer contains a flaw that may allow a malicious user to execute arbitrary files. By placing a malicious file into the cache directory and adding a double slash ("\\") to the CODEBASE function, the program will execute the file within the trusted MYCOMPUTER zone. It is possible that the flaw may allow execution of arbitrary files resulting in a loss of integrity.
|
2003-10-30
|
Microsoft IE Double Slash Cache File Execution (DblSlashForCache)
|
|
60323
Description:
(Description Provided by CVE) : The (1) ipq_read and (2) ipulog_read functions in iptables allow local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.
|
2003-10-30
|
Linux IPTables Netlink Interface Spoofed Message Local DoS
|
|
7365
Description:
thttpd contains a flaw that may allow a remote denial of service. The issue is triggered due to an unknown sockaddr type, and will result in loss of availability for the daemon. No further details have been provided.
|
2003-10-29
|
thttpd Unknown sockaddr Type DoS
|
|
2753
Description:
e107 contains a flaw that may allow a remote denial of service. The issue is triggered when invalid input is supplied in the "Name:" field of the Chatbox.php script, and will result in loss of availability for certain pages.
|
2003-10-29
|
e107 Chatbox.php Name Parameter DoS
|
|
57530
Description:
(Description Provided by CVE) : Buffer overflow in TelCondex SimpleWebServer 2.12.30210 Build3285 allows remote attackers to execute arbitrary code via a long HTTP Referer header.
|
2003-10-29
|
TelCondex tc.SimpleWebServer Multiple HTTP Header Handling Remote Overflow
|
|
2733
Description:
A local overflow exists in Apache. The mod_rewrite module fails to handle regular expressions containing more than 9 captures (stored strings matching a particular pattern) resulting in a buffer overflow. With a specially crafted request, an attacker can execute arbitrary code or cause a denial of service resulting in a loss of integrity and/or confidentiality.
|
2003-10-29
|
Apache HTTP Server mod_rewrite Local Overflow
|
|
7611
Description:
A local overflow exists in Apache. The mod_alias module fails to handle regular expressions containing more than 9 captures (stored strings matching a particular pattern) resulting in a buffer overflow. With a specially crafted request, an attacker can execute arbitrary code or cause a denial of service resulting in a loss of integrity and/or confidentiality.
|
2003-10-29
|
Apache HTTP Server mod_alias Local Overflow
|
|
2732
Description:
NetFile contains a flaw that allows a remote cross site scripting attack. This flaw exists because because the application does not validate URLs that are returned in error messages for non-existant pages. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2003-10-29
|
Fastream NETFile FTP/WebServer 404 Error Page XSS
|
|
2700
Description:
byteHoard contains a flaw that allows a remote attacker to browse arbitrary directories outside of the web path. The issue is due to the files.inc.php script not properly sanitizing user input, specifically traversal style attacks (../../) supplied via an unknown variable.
|
2003-10-29
|
byteHoard files.inc.php Direct Request Arbitrary Directory Access
|
|
2730
Description:
(Description Provided by CVE) : The NFS Server for Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (UFS panic) via certain invalid UFS requests, which triggers a null dereference.
|
2003-10-29
|
Solaris NFS Client Request DoS
|
|
2728
Description:
Mac OS X contains an unspecified flaw in its Quicktime Java implementation. The flaw could allow unauthorized access to the system, leading to a loss of integrity. No further details have been provided.
|
2003-10-29
|
Apple QuickTime Unspecified Java System Compromise
|
|
90036
Description:
Libxml2 contains a flaw in the parser.c that may allow a denial of service. The issue is due to an unspecified error in compression saving, which may result in a crash for galeon.
|
2003-10-29
|
Libxml2 parser.c Compression Saving Unspecified DoS
|
|
2724
Description:
(Description Provided by CVE) : Unknown vulnerability in Nokia IPSO 3.7, configured as IP Clusters, allows remote attackers to cause a denial of service via unknown attack vectors.
|
2003-10-29
|
Nokia IPSO Cluster Unspecified Remote DoS
|
|
2725
Description:
A remote overflow exists in mod_security Apache module for Apache version 2. The sec_filter_out() function of mod_security fails to perform proper bounds checking on data transfered from server-side scripts, resulting in a buffer overflow. With a specially crafted request, an attacker can cause execute arbitrary code on the server resulting in a loss of confidentiality, integrity, and/or availability.
|
2003-10-29
|
ModSecurity (mod_security) sec_filter_out Function Remote Overflow
|
|
2723
Description:
(Description Provided by CVE) : Centrinity FirstClass 7.1 allows remote attackers to access sensitive information by appending search to the end of the URL and checking all of the search option checkboxes and leaving the text field blank, which will return all files in the searched directory.
|
2003-10-29
|
FirstClass /Search Web Root Remote Information Disclosure
|
|
2720
Description:
Yahoo! Messenger contains a flaw that may allow a remote denial of service. The issue is triggered when a specially crafted file transfer occurs, and will result in loss of availability for the service.
|
2003-10-28
|
Yahoo! Messenger Crafted File Transfer Remote Overflow DoS
|
|
2719
Description:
(Description Provided by CVE) : WebTide 7.04 allows remote attackers to list arbitrary directories via an HTTP request for %3f.jsp (encoded "?").
|
2003-10-28
|
WebTide Encoded JSP File HTTP Request Arbitrary Directory Access
|
|
2731
Description:
Mac OS X contains a flaw that may allow a malicious user to bypass screen locking. The issue is triggered when the screen effect is active, and keys pressed before the authentication window appears will be sent to the general user environment. It is possible that the flaw may allow a malicious user to launch applications in spite of screen locking resulting in a loss of integrity.
|
2003-10-28
|
Apple Mac OS X Screen Lock Bypass
|
|
2727
Description:
(Description Provided by CVE) : The WebCache component in Oracle Files 9.0.3.1.0, 9.0.3.2.0, and 9.0.3.3.0 of Oracle Collaboration Suite Release 1 caches files despite the cacheability rules imposed by Oracle Files, which allows local users to gain access.
|
2003-10-28
|
Oracle Collaboration Suite Files Component Cacheability Rule Weakness Restricted File Disclosure
|
|
2716
Description:
Libnids contains a flaw that may allow a remote attacker to execute arbitrary code. The issue is due to an unchecked buffer in the TCP reassembly module. If an attacker sends a specially crafted packet, they may be able to overflow the buffer and execute arbitrary privileges as root.
|
2003-10-28
|
Libnids TCP Reassembly Module Overflow
|
|
2734
Description:
IRIX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicious user bypasses Network File System (NFS) access checks when the root,rw or access options in /etc/exports contain only wildcards (IP addresses or domain suffixes) and no explicit hostnames or netgroups. This flaw may lead to a loss of integrity.
|
2003-10-28
|
IRIX NFS Wildcard exportfs Access Check Bypass
|
|
6686
Description:
Mac OS X contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered because the TCP timestamp is triggered by a constant number, which will disclose uptime information resulting in a loss of confidentiality.
|
2003-10-28
|
Apple Mac OS X TCP Timestamp ID Field Information Disclosure
|
|
6687
Description:
Mac OS X contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when an administrator authenticates to access secure Preferences Panes, and allows any local user to access secure Preference Panes for a limited time. This flaw may lead to a loss of integrity.
|
2003-10-28
|
Apple Mac OS X System Preferences Secure Pane Access
|
|
6690
Description:
A local overflow exists in Mac OS X. The kernel fails to validate arguments resulting in a buffer overflow. With a specially crafted request, an attacker can cause the kernel to crash resulting in a loss of availability.
|
2003-10-28
|
Apple Mac OS X Kernel argv Command Line Overflow
|