Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 878

Количество 331 878

nvd логотип

CVE-2004-1906

около 21 года назад

Mcafee FreeScan allows remote attackers to cause a denial of service and possibly arbitrary code via a long string in the ScanParam property of a COM object, which may trigger a buffer overflow.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1905

около 21 года назад

ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to cause a denial of service (crash) by calling the SetSitesFile function.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1904

около 21 года назад

Buffer overflow in ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to execute arbitrary code via the Internacional property followed by a long string.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1903

около 21 года назад

Buffer overflow in blaxxun 3D 7.0 allows remote attackers to execute arbitrary code via a long URL property inside an object tag.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1902

около 21 года назад

The Citrix MetaFrame Password Manager 2.0, when a central credential store is not configured, does not encrypt passwords entered immediately after executing the First Time User Wizards, which allows local users to gain sensitive information.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1901

около 21 года назад

Portage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2004-1900

около 21 года назад

Format string vulnerability in the logging function in IGI 2 Covert Strike server 1.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in RCON commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1899

около 21 года назад

The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST that contains 1024 bytes.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1898

около 21 года назад

Stack-based buffer overflow in the administration interface in Monit 1.4 through 4.2 allows remote attackers to execute arbitrary code via a long username.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2004-1897

около 21 года назад

Administration interface in Monit 1.4 through 4.2 allows remote attackers to cause a denial of service (segmentation fault) by sending a Basic Authentication request without a password, which causes Monit to decrement a null pointer and perform an out-of-bounds read.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1896

около 21 года назад

Heap-based buffer overflow in in_mod.dll in Nullsoft Winamp 2.91 through 5.02 allows remote attackers to execute arbitrary code via a Fasttracker 2 (.xm) mod media file.

CVSS2: 7.6
EPSS: Средний
nvd логотип

CVE-2004-1895

около 21 года назад

YaST Online Update (YOU) in SuSE 8.2 and 9.0 allows local users to overwrite arbitrary files via a symlink attack on you-$USER/cookies.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1894

около 21 года назад

TEXutil in ConTEXt, when executed with the --silent option, allows local users to overwrite arbitrary files via a symlink attack on texutil.log.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1893

около 21 года назад

Dreamweaver MX, when "Using Driver On Testing Server" or "Using DSN on Testing Server" is selected, uploads the mmhttpdb.asp script to the web site but does not require authentication, which allows remote attackers to obtain sensitive information and possibly execute arbitrary SQL commands via a direct request to mmhttpdb.asp.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1892

около 21 года назад

Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2004-1891

около 21 года назад

The ftp_syslog function in ftpd in SGI IRIX 6.5.20 "doesn't work with anonymous FTP," which has an unknown impact, possibly preventing the actions of anonymous users from being logged.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1890

почти 22 года назад

Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (hang) via the PORT mode.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1889

около 21 года назад

Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (hang) via a link failure with Microsoft Windows.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1888

около 21 года назад

display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file variable.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-1887

около 21 года назад

Ada Image Server (ImgSvr) 0.4 allows remote attackers to view directories or download files via an HTTP request with a trailing %00 (null).

CVSS2: 5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-1906

Mcafee FreeScan allows remote attackers to cause a denial of service and possibly arbitrary code via a long string in the ScanParam property of a COM object, which may trigger a buffer overflow.

CVSS2: 5
8%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1905

ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to cause a denial of service (crash) by calling the SetSitesFile function.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1904

Buffer overflow in ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to execute arbitrary code via the Internacional property followed by a long string.

CVSS2: 7.5
7%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1903

Buffer overflow in blaxxun 3D 7.0 allows remote attackers to execute arbitrary code via a long URL property inside an object tag.

CVSS2: 10
6%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1902

The Citrix MetaFrame Password Manager 2.0, when a central credential store is not configured, does not encrypt passwords entered immediately after executing the First Time User Wizards, which allows local users to gain sensitive information.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1901

Portage before 2.0.50-r3 allows local users to overwrite arbitrary files via a hard link attack on the lockfiles.

CVSS3: 5.5
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1900

Format string vulnerability in the logging function in IGI 2 Covert Strike server 1.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in RCON commands.

CVSS2: 7.5
4%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1899

The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST that contains 1024 bytes.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1898

Stack-based buffer overflow in the administration interface in Monit 1.4 through 4.2 allows remote attackers to execute arbitrary code via a long username.

CVSS2: 10
34%
Средний
около 21 года назад
nvd логотип
CVE-2004-1897

Administration interface in Monit 1.4 through 4.2 allows remote attackers to cause a denial of service (segmentation fault) by sending a Basic Authentication request without a password, which causes Monit to decrement a null pointer and perform an out-of-bounds read.

CVSS2: 5
9%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1896

Heap-based buffer overflow in in_mod.dll in Nullsoft Winamp 2.91 through 5.02 allows remote attackers to execute arbitrary code via a Fasttracker 2 (.xm) mod media file.

CVSS2: 7.6
25%
Средний
около 21 года назад
nvd логотип
CVE-2004-1895

YaST Online Update (YOU) in SuSE 8.2 and 9.0 allows local users to overwrite arbitrary files via a symlink attack on you-$USER/cookies.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1894

TEXutil in ConTEXt, when executed with the --silent option, allows local users to overwrite arbitrary files via a symlink attack on texutil.log.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1893

Dreamweaver MX, when "Using Driver On Testing Server" or "Using DSN on Testing Server" is selected, uploads the mmhttpdb.asp script to the web site but does not require authentication, which allows remote attackers to obtain sensitive information and possibly execute arbitrary SQL commands via a direct request to mmhttpdb.asp.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1892

Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string.

CVSS2: 7.5
15%
Средний
около 21 года назад
nvd логотип
CVE-2004-1891

The ftp_syslog function in ftpd in SGI IRIX 6.5.20 "doesn't work with anonymous FTP," which has an unknown impact, possibly preventing the actions of anonymous users from being logged.

CVSS2: 5
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1890

Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (hang) via the PORT mode.

CVSS2: 5
1%
Низкий
почти 22 года назад
nvd логотип
CVE-2004-1889

Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (hang) via a link failure with Microsoft Windows.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1888

display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file variable.

CVSS2: 7.5
9%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1887

Ada Image Server (ImgSvr) 0.4 allows remote attackers to view directories or download files via an HTTP request with a trailing %00 (null).

CVSS2: 5
10%
Средний
около 21 года назад

Уязвимостей на страницу