Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 309 416

Количество 309 416

nvd логотип

CVE-2004-1783

больше 20 лет назад

Directory traversal vulnerability in Net2Soft Flash FTP Server 1.0 allows remote attackers to read and create arbitrary files via a /.. (slash dot dot).

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1782

больше 20 лет назад

athenareg.php in Athena Web Registration allows remote attackers to execute arbitrary commands via shell metacharacters in the pass parameter.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2004-1781

больше 20 лет назад

Info Touch Surfnet kiosk allows local users to crash Surfnet and access the underlying operating system via the CMD_CREDITCARD_CHARGE command.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-1780

больше 20 лет назад

Info Touch Surfnet kiosk allows local users to deposit extra time into Internet kiosk accounts via repeated authentication attempts.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-1779

больше 20 лет назад

Cross-site scripting (XSS) vulnerability in board.php for ThWboard before beta 2.84 allows remote attackers to inject arbitrary web script or HTML via the lastvisited parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2004-1778

больше 20 лет назад

Skype 0.92.0.12 and 1.0.0.1 for Linux, and possibly other versions, creates the /usr/share/skype/lang directory with world-writable permissions, which allows local users to modify language files and possibly conduct social engineering or other attacks.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-1777

больше 20 лет назад

A "range check error" in Skype for Windows before 0.98.0.28 allows local and remote attackers to cause a denial of service (application crash) via long command line arguments or a long callto:// URL, a different vulnerability than CVE-2004-1114.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1776

больше 24 лет назад

Cisco IOS 12.1(3) and 12.1(3)T allows remote attackers to read and modify device configuration data via the cable-docsis read-write community string used by the Data Over Cable Service Interface Specification (DOCSIS) standard.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1775

больше 20 лет назад

Cisco VACM (View-based Access Control MIB) for Catalyst Operating Software (CatOS) 5.5 and 6.1 and IOS 12.0 and 12.1 allows remote attackers to read and modify device configuration via the read-write community string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1774

около 21 года назад

Buffer overflow in the SDO_CODE_SIZE procedure of the MD2 package (MDSYS.MD2.SDO_CODE_SIZE) in Oracle 10g before 10.1.0.2 Patch 2 allows local users to execute arbitrary code via a long LAYER parameter.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2004-1773

больше 20 лет назад

Multiple buffer overflows in sharutils 4.2.1 and earlier may allow attackers to execute arbitrary code via (1) long output from wc to shar, or (2) unknown vectors in unshar.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1772

больше 20 лет назад

Stack-based buffer overflow in shar in GNU sharutils 4.2.1 allows local users to execute arbitrary code via a long -o command line argument.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-1771

почти 21 год назад

Scalable OGo (SOGo) 1.0 allows remote authenticated users to bypass intended permissions and view private appointments of other users.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1770

больше 21 года назад

The login page for cPanel 9.1.0, and possibly other versions, allows remote attackers to execute arbitrary code via shell metacharacters in the user parameter.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2004-1769

больше 21 года назад

The "Allow cPanel users to reset their password via email" feature in cPanel 9.1.0 build 34 and earlier, including 8.x, allows remote attackers to execute arbitrary code via the user parameter to resetpass.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1768

больше 20 лет назад

The character converters in the Spamhunter and Language ID modules for Symantec Brightmail AntiSpam 6.0.1 before patch 132 allow remote attackers to cause a denial of service (crash) via messages with the ISO-8859-10 character set, which is not recognized by the converters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1767

больше 20 лет назад

The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2004-1766

больше 21 года назад

The default installation of NetScreen-Security Manager before Feature Pack 1 does not enable encryption for communication with devices running ScreenOS 5.0, which allows remote attackers to obtain sensitive information via sniffing.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1765

больше 20 лет назад

Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2004-1764

больше 21 года назад

Buffer overflow in CDE libDtSvc on HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows local users to gain root privileges via unknown vectors.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-1783

Directory traversal vulnerability in Net2Soft Flash FTP Server 1.0 allows remote attackers to read and create arbitrary files via a /.. (slash dot dot).

CVSS2: 7.5
3%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1782

athenareg.php in Athena Web Registration allows remote attackers to execute arbitrary commands via shell metacharacters in the pass parameter.

CVSS2: 7.5
12%
Средний
больше 20 лет назад
nvd логотип
CVE-2004-1781

Info Touch Surfnet kiosk allows local users to crash Surfnet and access the underlying operating system via the CMD_CREDITCARD_CHARGE command.

CVSS2: 4.6
0%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1780

Info Touch Surfnet kiosk allows local users to deposit extra time into Internet kiosk accounts via repeated authentication attempts.

CVSS2: 4.6
0%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1779

Cross-site scripting (XSS) vulnerability in board.php for ThWboard before beta 2.84 allows remote attackers to inject arbitrary web script or HTML via the lastvisited parameter.

CVSS2: 4.3
1%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1778

Skype 0.92.0.12 and 1.0.0.1 for Linux, and possibly other versions, creates the /usr/share/skype/lang directory with world-writable permissions, which allows local users to modify language files and possibly conduct social engineering or other attacks.

CVSS2: 4.6
0%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1777

A "range check error" in Skype for Windows before 0.98.0.28 allows local and remote attackers to cause a denial of service (application crash) via long command line arguments or a long callto:// URL, a different vulnerability than CVE-2004-1114.

CVSS2: 5
1%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1776

Cisco IOS 12.1(3) and 12.1(3)T allows remote attackers to read and modify device configuration data via the cable-docsis read-write community string used by the Data Over Cable Service Interface Specification (DOCSIS) standard.

CVSS2: 7.5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2004-1775

Cisco VACM (View-based Access Control MIB) for Catalyst Operating Software (CatOS) 5.5 and 6.1 and IOS 12.0 and 12.1 allows remote attackers to read and modify device configuration via the read-write community string.

CVSS2: 5
1%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1774

Buffer overflow in the SDO_CODE_SIZE procedure of the MD2 package (MDSYS.MD2.SDO_CODE_SIZE) in Oracle 10g before 10.1.0.2 Patch 2 allows local users to execute arbitrary code via a long LAYER parameter.

CVSS2: 7.2
8%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1773

Multiple buffer overflows in sharutils 4.2.1 and earlier may allow attackers to execute arbitrary code via (1) long output from wc to shar, or (2) unknown vectors in unshar.

CVSS2: 7.5
2%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1772

Stack-based buffer overflow in shar in GNU sharutils 4.2.1 allows local users to execute arbitrary code via a long -o command line argument.

CVSS2: 4.6
0%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1771

Scalable OGo (SOGo) 1.0 allows remote authenticated users to bypass intended permissions and view private appointments of other users.

CVSS2: 5
0%
Низкий
почти 21 год назад
nvd логотип
CVE-2004-1770

The login page for cPanel 9.1.0, and possibly other versions, allows remote attackers to execute arbitrary code via shell metacharacters in the user parameter.

CVSS2: 10
12%
Средний
больше 21 года назад
nvd логотип
CVE-2004-1769

The "Allow cPanel users to reset their password via email" feature in cPanel 9.1.0 build 34 and earlier, including 8.x, allows remote attackers to execute arbitrary code via the user parameter to resetpass.

CVSS2: 10
4%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1768

The character converters in the Spamhunter and Language ID modules for Symantec Brightmail AntiSpam 6.0.1 before patch 132 allow remote attackers to cause a denial of service (crash) via messages with the ISO-8859-10 character set, which is not recognized by the converters.

CVSS2: 5
2%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1767

The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel modules (LKM), possibly involving the modload function.

CVSS2: 7.2
0%
Низкий
больше 20 лет назад
nvd логотип
CVE-2004-1766

The default installation of NetScreen-Security Manager before Feature Pack 1 does not enable encryption for communication with devices running ScreenOS 5.0, which allows remote attackers to obtain sensitive information via sniffing.

CVSS2: 5
2%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1765

Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.

CVSS2: 7.5
15%
Средний
больше 20 лет назад
nvd логотип
CVE-2004-1764

Buffer overflow in CDE libDtSvc on HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows local users to gain root privileges via unknown vectors.

CVSS2: 7.2
0%
Низкий
больше 21 года назад

Уязвимостей на страницу