Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 614

Количество 331 614

nvd логотип

CVE-2004-1281

около 21 года назад

The ftp_retr function in junkie 0.3.1 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in a filename.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1280

около 21 года назад

The gui_popup_view_fly function in gui_tview_popup.c for junkie 0.3.1 allows remote malicious FTP servers to execute arbitrary commands via shell metacharacters in a filename.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1279

около 21 года назад

Buffer overflow in the get_file_list_stdin function in jpegtoavi 1.5 allows remote attackers to execute arbitrary code via a crafted set of JPEG files and filenames.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1278

около 21 года назад

Buffer overflow in the switch_voice function in parse.c for jcabc2ps 20040902 allows remote attackers to execute arbitrary code via a crafted ABC file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1277

около 21 года назад

The download_selection_recursive() function in ftplist.c for IglooFTP 0.6.1 allows remote malicious FTP servers to overwrite arbitrary files via filenames that contain / (slash) characters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1276

около 21 года назад

IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the tmpnam function, before the files are opened by IglooFTP.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1275

около 21 года назад

Buffer overflow in the remove_quote function in convert.c for html2hdml 1.0.3 allows remote attackers to execute arbitrary code via a crafted HTML file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1274

около 21 года назад

The DownloadLoop function in main.c for greed 0.81p allows remote attackers to execute arbitrary code via a GRX file containing a filename with shell metacharacters.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1273

около 21 года назад

Buffer overflow in the DownloadLoop function in main.c for greed 0.81p allows remote attackers to execute arbitrary code via a GRX file containing a long filename.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1272

около 21 года назад

Buffer overflow in the save_embedded_address function in filter.c for elm/bolthole filter 2.6.1 allows remote attackers to execute arbitrary code via a crafted email message.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1271

около 21 года назад

Buffer overflow in the dxfin function in d.c for dxfscope 0.2 allows remote attackers to execute arbitrary code via a crafted DXF file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1270

около 21 года назад

lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users to control output to passwd.new via certain user input that triggers an error message.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1269

около 21 года назад

lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-1268

около 21 года назад

lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering the write errors.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2004-1267

около 21 года назад

Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary code via a crafted HPGL file.

CVSS2: 6.5
EPSS: Средний
nvd логотип

CVE-2004-1266

около 21 года назад

Buffer overflow in the get_field_headers function in csv2xml.cpp for csv2xml 0.5.1 allows remote attackers to execute arbitrary code via a crafted CSV file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1265

около 21 года назад

Buffer overflow in the readObjectChunk function in 3dsimp.cpp for the convex-tool program in Convex 3D 0.8pre1 allows remote attackers to execute arbitrary code via a crafted 3DS file.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2004-1264

около 21 года назад

Buffer overflow in the simplify_path function in config.c for ChBg 1.5 allows remote attackers to execute arbitrary code via a crafted chbg scenario file.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2004-1263

около 21 года назад

changepassword.cgi in ChangePassword 0.8, when installed setuid, allows local users to execute arbitrary code by modifying the PATH environment variable to point to a malicious "make" program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2004-1262

около 21 года назад

Buffer overflow in the bsb_open_header function in libbsb for bsb2ppm 0.0.6 allows remote attackers to execute arbitrary code via crafted BSB pictures.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-1281

The ftp_retr function in junkie 0.3.1 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in a filename.

CVSS2: 5
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1280

The gui_popup_view_fly function in gui_tview_popup.c for junkie 0.3.1 allows remote malicious FTP servers to execute arbitrary commands via shell metacharacters in a filename.

CVSS2: 10
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1279

Buffer overflow in the get_file_list_stdin function in jpegtoavi 1.5 allows remote attackers to execute arbitrary code via a crafted set of JPEG files and filenames.

CVSS2: 10
9%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1278

Buffer overflow in the switch_voice function in parse.c for jcabc2ps 20040902 allows remote attackers to execute arbitrary code via a crafted ABC file.

CVSS2: 10
3%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1277

The download_selection_recursive() function in ftplist.c for IglooFTP 0.6.1 allows remote malicious FTP servers to overwrite arbitrary files via filenames that contain / (slash) characters.

CVSS2: 5
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1276

IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the tmpnam function, before the files are opened by IglooFTP.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1275

Buffer overflow in the remove_quote function in convert.c for html2hdml 1.0.3 allows remote attackers to execute arbitrary code via a crafted HTML file.

CVSS2: 10
3%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1274

The DownloadLoop function in main.c for greed 0.81p allows remote attackers to execute arbitrary code via a GRX file containing a filename with shell metacharacters.

CVSS2: 10
3%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1273

Buffer overflow in the DownloadLoop function in main.c for greed 0.81p allows remote attackers to execute arbitrary code via a GRX file containing a long filename.

CVSS2: 10
5%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1272

Buffer overflow in the save_embedded_address function in filter.c for elm/bolthole filter 2.6.1 allows remote attackers to execute arbitrary code via a crafted email message.

CVSS2: 10
5%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1271

Buffer overflow in the dxfin function in d.c for dxfscope 0.2 allows remote attackers to execute arbitrary code via a crafted DXF file.

CVSS2: 10
3%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1270

lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users to control output to passwd.new via certain user input that triggers an error message.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1269

lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail.

CVSS2: 5
9%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1268

lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering the write errors.

CVSS2: 2.1
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1267

Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary code via a crafted HPGL file.

CVSS2: 6.5
23%
Средний
около 21 года назад
nvd логотип
CVE-2004-1266

Buffer overflow in the get_field_headers function in csv2xml.cpp for csv2xml 0.5.1 allows remote attackers to execute arbitrary code via a crafted CSV file.

CVSS2: 10
3%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1265

Buffer overflow in the readObjectChunk function in 3dsimp.cpp for the convex-tool program in Convex 3D 0.8pre1 allows remote attackers to execute arbitrary code via a crafted 3DS file.

CVSS2: 10
3%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1264

Buffer overflow in the simplify_path function in config.c for ChBg 1.5 allows remote attackers to execute arbitrary code via a crafted chbg scenario file.

CVSS2: 10
26%
Средний
около 21 года назад
nvd логотип
CVE-2004-1263

changepassword.cgi in ChangePassword 0.8, when installed setuid, allows local users to execute arbitrary code by modifying the PATH environment variable to point to a malicious "make" program.

CVSS2: 7.2
0%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1262

Buffer overflow in the bsb_open_header function in libbsb for bsb2ppm 0.0.6 allows remote attackers to execute arbitrary code via crafted BSB pictures.

CVSS2: 10
3%
Низкий
около 21 года назад

Уязвимостей на страницу