CVE-2003-0290
Status: ModifiedMedium (5)—
Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection is terminated.
CVSS
- Version: 2.0
- Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P
- Base score: 5
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 7.85%
- Percentile among all scored CVEs: 95
- Score date: 10/4/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- NVD-CWE-Other
References
- http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0064.html
- http://marc.info/?l=bugtraq&m=105284630228137&w=2
- http://marc.info/?l=bugtraq&m=105284631428187&w=2
- http://www.securityfocus.com/bid/7552
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11973
- http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0064.html
- http://marc.info/?l=bugtraq&m=105284630228137&w=2
- http://marc.info/?l=bugtraq&m=105284631428187&w=2
- http://www.securityfocus.com/bid/7552
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11973
Raw JSON (NVD)
Show
{
"id": "CVE-2003-0290",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2003-06-16T04:00:00.000",
"references": [
{
"url": "http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0064.html",
"source": "cve@mitre.org"
},
{
"url": "http://marc.info/?l=bugtraq&m=105284630228137&w=2",
"source": "cve@mitre.org"
},
{
"url": "http://marc.info/?l=bugtraq&m=105284631428187&w=2",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/7552",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11973",
"source": "cve@mitre.org"
},
{
"url": "http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0064.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://marc.info/?l=bugtraq&m=105284630228137&w=2",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://marc.info/?l=bugtraq&m=105284631428187&w=2",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/7552",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11973",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection is terminated."
},
{
"lang": "es",
"value": "Goteo de memoria en eServ 2.9x permite que atacantes remotos causen una denegación de servicio (agotamiento de memoria) mediante un elevado número de conexiones (ya que la memoria no se libera cuando se ha terminado la conexión)."
}
],
"lastModified": "2026-06-16T22:01:55.050",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:etype:eserv:2.9x:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "40D330E5-3764-4C00-A40A-6F94F72E3CCC"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}