Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 542

Количество 331 542

nvd логотип

CVE-2004-1749

больше 21 года назад

Attack Mitigator IPS 5500 3.11.008, and possibly other versions, when configured in a one-armed routing configuration, allows remote attackers to cause a denial of service (CPU consumption) via a large number of HTTP requests.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1748

около 21 года назад

NtRegmon before 6.12 allows local users to cause a denial of service (crash), while NtRegmon is running, via invalid pointers to hook functions such as ZwSetQueryValue.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1747

около 21 года назад

Cross-site scripting (XSS) vulnerability in NetworkEverywhere NR041 running firmware 1.2 Release 03 allows remote attackers to inject arbitrary web script or HTML via the DHCP HOSTNAME option.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2004-1746

около 21 года назад

Cross-site scripting (XSS) vulnerability in index.php in PHP Code Snippet Library allows remote attackers to inject arbitrary web script or HTML via the (1) cat_select or (2) show parameters.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2004-1745

больше 21 года назад

Buffer overflow in Painkiller 1.3.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long password.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2004-1744

больше 21 года назад

Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to cause a denial of service (CPU consumption or crash) via many large HTTP requests.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1743

больше 21 года назад

Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to view arbitrary files via an HTTP request for the disk_c virtual folder.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1742

больше 21 года назад

Directory traversal vulnerability in WebAPP 0.9.9 allows remote attackers to view arbitrary files via a .. (dot dot) in the viewcat parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1741

больше 21 года назад

Music daemon (musicd) 0.0.3 and earlier allows remote attackers to cause a denial of service (crash) by calling LOAD with a binary file as an argument, then calling SHOWLIST.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1740

больше 21 года назад

Music daemon (musicd) 0.0.3 and earlier allows remote attackers to read arbitrary files by calling LOAD with a full pathname, then calling SHOWLIST.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1739

больше 21 года назад

Bird Chat 1.61 allows remote attackers to cause a denial of service (crash) via invalid users.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1738

около 21 года назад

Cross-site scripting (XSS) vulnerability in page.php in JShop allows remote attackers to inject arbitrary web script or HTML via the xPage parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2004-1737

больше 21 года назад

SQL injection vulnerability in auth_login.php in Cacti 0.8.5a allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password parameters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1736

около 21 года назад

Cacti 0.8.5a allows remote attackers to gain sensitive information via an HTTP request to (1) auth.php, (2) auth_login.php, (3) auth_changepassword.php, and possibly other php files, which reveal the installation path in a PHP error message.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1735

больше 21 года назад

Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2004-1734

около 21 года назад

PHP remote file inclusion vulnerability in Mantis 0.19.0a allows remote attackers to execute arbitrary PHP code by modifying the (1) t_core_path parameter to bug_api.php or (2) t_core_dir parameter to relationship_api.php to reference a URL on a remote web server that contains the code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1733

больше 21 года назад

Directory traversal vulnerability in MyDMS 1.4.2 and other versions allows remote registered users to read arbitrary files via .. (dot dot) sequences in the URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1732

больше 21 года назад

SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1731

больше 21 года назад

signup_page.php in Mantis bugtracker allows remote attackers to send e-mail bombs by creating multiple users and providing the same e-mail address.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1730

около 21 года назад

Cross-site scripting (XSS) vulnerability in Mantis bugtracker allows remote attackers to inject arbitrary web script or HTML via (1) the return parameter to login_page.php, (2) e-mail field in signup.php, (3) action parameter to login_select_proj_page.php, or (4) hide_status parameter to view_all_set.php.

CVSS2: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-1749

Attack Mitigator IPS 5500 3.11.008, and possibly other versions, when configured in a one-armed routing configuration, allows remote attackers to cause a denial of service (CPU consumption) via a large number of HTTP requests.

CVSS2: 5
1%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1748

NtRegmon before 6.12 allows local users to cause a denial of service (crash), while NtRegmon is running, via invalid pointers to hook functions such as ZwSetQueryValue.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1747

Cross-site scripting (XSS) vulnerability in NetworkEverywhere NR041 running firmware 1.2 Release 03 allows remote attackers to inject arbitrary web script or HTML via the DHCP HOSTNAME option.

CVSS2: 4.3
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1746

Cross-site scripting (XSS) vulnerability in index.php in PHP Code Snippet Library allows remote attackers to inject arbitrary web script or HTML via the (1) cat_select or (2) show parameters.

CVSS2: 4.3
5%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1745

Buffer overflow in Painkiller 1.3.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long password.

CVSS2: 5
10%
Средний
больше 21 года назад
nvd логотип
CVE-2004-1744

Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to cause a denial of service (CPU consumption or crash) via many large HTTP requests.

CVSS2: 5
9%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1743

Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to view arbitrary files via an HTTP request for the disk_c virtual folder.

CVSS2: 5
1%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1742

Directory traversal vulnerability in WebAPP 0.9.9 allows remote attackers to view arbitrary files via a .. (dot dot) in the viewcat parameter.

CVSS2: 5
5%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1741

Music daemon (musicd) 0.0.3 and earlier allows remote attackers to cause a denial of service (crash) by calling LOAD with a binary file as an argument, then calling SHOWLIST.

CVSS2: 5
6%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1740

Music daemon (musicd) 0.0.3 and earlier allows remote attackers to read arbitrary files by calling LOAD with a full pathname, then calling SHOWLIST.

CVSS2: 5
0%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1739

Bird Chat 1.61 allows remote attackers to cause a denial of service (crash) via invalid users.

CVSS2: 5
5%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1738

Cross-site scripting (XSS) vulnerability in page.php in JShop allows remote attackers to inject arbitrary web script or HTML via the xPage parameter.

CVSS2: 4.3
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1737

SQL injection vulnerability in auth_login.php in Cacti 0.8.5a allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password parameters.

CVSS2: 7.5
3%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1736

Cacti 0.8.5a allows remote attackers to gain sensitive information via an HTTP request to (1) auth.php, (2) auth_login.php, (3) auth_changepassword.php, and possibly other php files, which reveal the installation path in a PHP error message.

CVSS2: 5
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1735

Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field.

CVSS2: 4.3
4%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1734

PHP remote file inclusion vulnerability in Mantis 0.19.0a allows remote attackers to execute arbitrary PHP code by modifying the (1) t_core_path parameter to bug_api.php or (2) t_core_dir parameter to relationship_api.php to reference a URL on a remote web server that contains the code.

CVSS2: 7.5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1733

Directory traversal vulnerability in MyDMS 1.4.2 and other versions allows remote registered users to read arbitrary files via .. (dot dot) sequences in the URL.

CVSS2: 5
0%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1732

SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter.

CVSS2: 7.5
1%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1731

signup_page.php in Mantis bugtracker allows remote attackers to send e-mail bombs by creating multiple users and providing the same e-mail address.

CVSS2: 5
4%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-1730

Cross-site scripting (XSS) vulnerability in Mantis bugtracker allows remote attackers to inject arbitrary web script or HTML via (1) the return parameter to login_page.php, (2) e-mail field in signup.php, (3) action parameter to login_select_proj_page.php, or (4) hide_status parameter to view_all_set.php.

CVSS2: 4.3
1%
Низкий
около 21 года назад

Уязвимостей на страницу