Latest CVE Feed
-
5.0
MEDIUMCVE-2004-2009
NukeJokes 1.7 and 2 Beta allows remote attackers to obtain the full path of the server via (1) a direct call to mainfunctions.php, (2) an invalid jokeid parameter in a JokeView function or (3) an invalid cat parameter in a CatView function, which reveals ... Read more
Affected Products : nukejokes- Published: May. 08, 2004
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2004-2008
SQL injection vulnerability in modules.php in NukeJokes 1.7 and 2 Beta allows remote attackers to execute arbitrary SQL via the jokeid parameter.... Read more
Affected Products : nukejokes- Published: May. 08, 2004
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2004-2006
Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installation directory and registry keys, which allows local users to disable virus protection.... Read more
Affected Products : officescan- Published: May. 07, 2004
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2004-2003
Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name field.... Read more
Affected Products : delegate- Published: May. 06, 2004
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2004-2005
Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-mail with (1) a link to a long URL to the C drive or (2) a long attachment name.... Read more
Affected Products : eudora- Published: May. 06, 2004
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-2004
The Live CD in SUSE LINUX 9.1 Personal edition is configured without a password for root, which allows remote attackers to gain privileges via SSH.... Read more
Affected Products : suse_linux- Published: May. 06, 2004
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2004-1998
The Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to gain sensitive information via an invalid show parameter to modules.php, which reveals the full path in a PHP error message.... Read more
Affected Products : php-nuke- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2004-2002
Unknown vulnerability in SGI IRIX 6.5 through 6.5.22m allows remote attackers to cause a denial of service via a certain UDP packet.... Read more
Affected Products : irix- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2004-2000
SQL injection vulnerability in the Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to execute arbitrary SQL via the (1) orderby or (2) sid parameters to modules.php.... Read more
Affected Products : php-nuke- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2004-1997
Kolab stores OpenLDAP passwords in plaintext in the slapd.conf file, which may be installed world-readable, which allows local users to gain privileges.... Read more
- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
4.3
MEDIUMCVE-2004-1999
Cross-site scripting (XSS) vulnerability in the Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to inject arbitrary HTML and web script via the (1) ttitle or (2) sid parameters to modules.php.... Read more
Affected Products : php-nuke- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2004-2001
ifconfig "-arp" in SGI IRIX 6.5 through 6.5.22m does not properly disable ARP requests from being sent or received.... Read more
Affected Products : irix- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
4.3
MEDIUMCVE-2004-1996
Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 1.0 allows remote attackers to inject arbitrary web script via the size tag.... Read more
Affected Products : smf- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2004-1994
FuseTalk 4.0 allows remote attackers to ban other users via a direct request to banning.cfm.... Read more
Affected Products : fusetalk- Published: May. 05, 2004
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2004-0149
Multiple buffer overflows in xboing before 2.4 allow local users to gain privileges.... Read more
Affected Products : xboing- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2004-0222
Multiple memory leaks in isakmpd in OpenBSD 3.4 and earlier allow remote attackers to cause a denial of service (memory exhaustion) via certain ISAKMP packets, as demonstrated by the Striker ISAKMP Protocol Test Suite.... Read more
- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
6.4
MEDIUMCVE-2004-0374
Interchange before 5.0.1 allows remote attackers to "expose the content of arbitrary variables" and read or modify sensitive SQL information via an HTTP request ending with the "__SQLUSER__" string.... Read more
Affected Products : interchange- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2004-0218
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (infinite loop) via an ISAKMP packet with a zero-length payload, as demonstrated by the Striker ISAKMP Protocol Test Suite.... Read more
- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2004-0219
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with a malformed IPSEC SA payload, as demonstrated by the Striker ISAKMP Protocol Test Suite.... Read more
- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2003-0618
Multiple vulnerabilities in suidperl 5.6.1 and earlier allow a local user to obtain sensitive information about files for which the user does not have appropriate permissions.... Read more
- Published: May. 04, 2004
- Modified: Apr. 03, 2025