Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2004-2632 | 1 Phpmyadmin | 1 Phpmyadmin | 2017-07-19 | 7.5 HIGH | N/A |
phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg['Servers'] variables. | |||||
CVE-2004-2633 | 1 Arjohn Kampman | 1 Sesame Rdf Container | 2017-07-19 | 5.1 MEDIUM | N/A |
Unspecified vulnerability in Sesamie 1.0 allows remote anonymous attackers to gain access to repositories of other users via unknown vectors. | |||||
CVE-2004-2634 | 1 Ibm | 1 Aix | 2017-07-19 | 6.2 MEDIUM | N/A |
The (1) bos.rte.serv_aid or (2) bos.rte.console filesets in IBM AIX 5.1 and 5.2 allow local users to overwrite arbitrary files via a symlink attack on temporary files via unknown attack vectors. | |||||
CVE-2004-2635 | 1 Mcafee | 1 Security Installer Control System | 2017-07-19 | 7.5 HIGH | N/A |
An ActiveX control for McAfee Security Installer Control System 4.0.0.81 allows remote attackers to access the Windows registry via web pages that use the control's RegQueryValue() method. | |||||
CVE-2004-2636 | 1 Rit Research Labs | 1 Tinyweb | 2017-07-19 | 5.0 MEDIUM | N/A |
TinyWeb 1.9 allows remote attackers to read source code of scripts via "/./" in the URL. | |||||
CVE-2004-2637 | 1 Zonet | 1 Zsr1104we Wireless Router Runtime Code | 2017-07-19 | 6.4 MEDIUM | N/A |
The NAT implementation in Zonet ZSR1104WE Wireless Router Runtime Code Version 2.41 converts IP addresses of inbound connections to the IP address of the router, which allows remote attackers to bypass intended security restrictions. | |||||
CVE-2004-2638 | 1 Oscommerce | 1 Oscommerce | 2017-07-19 | 7.5 HIGH | N/A |
The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers to access files in the "admin/" directory by modifying the in_login parameter to a non-zero value. | |||||
CVE-2004-2639 | 1 Drew Withers | 1 Journalness | 2017-07-19 | 7.5 HIGH | N/A |
Unspecified vulnerability in Journalness 3.0.7 and earlier allows remote attackers to create or modify posts via unknown attack vectors. | |||||
CVE-2004-2640 | 1 Ryszard Pydo | 1 Linuxstat | 2017-07-19 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in lstat.cgi in LinuxStat before 2.3.1 allows remote attackers to read arbitrary files via (1) .. (dot dot) sequences or (2) absolute paths to the template parameter. | |||||
CVE-2004-2641 | 1 Sun | 2 Netra 1280, Sun Fire | 2017-07-19 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cause a denial of service (system controller hang) via IP Packets With Type of Service (TOS) Bits set. | |||||
CVE-2004-2642 | 1 Nathaniel Bray | 1 Yeemp | 2017-07-19 | 6.4 MEDIUM | N/A |
Yeemp 0.9.9 and earlier does not properly encrypt inbound files, which allows remote attackers to spoof the identity of the sender. | |||||
CVE-2004-2643 | 1 Microsoft | 1 Cabarc | 2017-07-19 | 3.7 LOW | N/A |
Directory traversal vulnerability in Microsoft cabarc allows remote attackers to overwrite files via "../" sequences in file names in a CAB archive. | |||||
CVE-2004-2644 | 1 Asn.1 Compiler | 1 Asn.1 Compiler | 2017-07-19 | 10.0 HIGH | N/A |
Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "ANY" type tags. | |||||
CVE-2004-2645 | 1 Asn.1 Compiler | 1 Asn.1 Compiler | 2017-07-19 | 10.0 HIGH | N/A |
Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "CHOICE" types with "indefinite length structures." | |||||
CVE-2004-2646 | 1 Reid Garner | 1 Free Web Chat | 2017-07-19 | 5.0 MEDIUM | N/A |
The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName variable to be null. | |||||
CVE-2004-2647 | 1 Reid Garner | 1 Free Web Chat | 2017-07-19 | 5.0 MEDIUM | N/A |
Free Web Chat 2.0 allows remote attackers to cause a denial of service (CPU consumption) via multiple connections from the same user. | |||||
CVE-2004-2648 | 1 Faronics | 1 Freezex | 2017-07-19 | 1.0 LOW | N/A |
FreezeX 1.00.100.0666 allows local users with administrator privileges to cause a denial of service (FreezeX application) by overwriting the db.fzx file. | |||||
CVE-2004-2649 | 1 Eudora | 1 Eudora | 2017-07-19 | 5.8 MEDIUM | N/A |
Eudora 6.1.0.6 allows remote attackers to obfuscate URLs displayed in the status bar by inserting a large number of characters (e.g. spaces coded as " ") in the middle of the URL. | |||||
CVE-2004-2651 | 1 Michael Christen | 1 Yacy | 2017-07-19 | 4.3 MEDIUM | N/A |
Multiple cross-site scripting (XSS) vulnerabilities in YaCy before 0.32 allow remote attackers to inject arbitrary web script or HTML via the (1) urlmaskfilter parameter to index.html or the (2) page parameter to Wiki.html. | |||||
CVE-2004-2652 | 1 Sourcefire | 1 Snort | 2017-07-19 | 7.8 HIGH | N/A |
The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packets with invalid TCP/IP options, which trigger a null dereference. |