Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2004-0163

почти 22 года назад

Sygate Secure Enterprise (SSE) 3.5MR3 and earlier does not change the key used to encrypt data, which allows remote attackers to cause a denial of service (resource exhaustion) by capturing a session and repeatedly replaying the session.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-0162

почти 22 года назад

Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME encapsulation that uses RFC822 comment fields, which may be interpreted as other fields by mail clients.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0161

почти 22 года назад

Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use RFC2231 encoding, which may be interpreted differently by mail clients.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0160

больше 22 лет назад

Synaesthesia 2.2 and earlier allows local users to execute arbitrary code via a symlink attack on the configuration file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2004-0159

больше 22 лет назад

Format string vulnerability in hsftp 1.11 allows remote authenticated users to cause a denial of service and possibly execute arbitrary code via file names containing format string characters that are not properly handled when executing an "ls" command.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0158

больше 22 лет назад

Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable to (1) editor.c, (2) theme.c, (3) manager.c, (4) config.c, (5) game.c, (6) levels.c, or (7) main.c.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-0157

около 22 лет назад

x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-0156

около 22 лет назад

Format string vulnerabilities in the (1) die or (2) log_event functions for ssmtp before 2.50.6 allow remote mail relays to cause a denial of service and possibly execute arbitrary code.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-0155

около 22 лет назад

The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0154

около 22 лет назад

rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup name is different from the forward lookup name.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-0153

больше 22 лет назад

Multiple format string vulnerabilities in emil 2.1.0 and earlier may allow remote attackers to execute arbitrary code by triggering certain error messages.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0152

больше 22 лет назад

Multiple stack-based buffer overflows in (1) the encode_mime function, (2) the encode_uuencode function, (3) or the decode_uuencode function for emil 2.1.0 and earlier allow remote attackers to execute arbitrary code via e-mail messages containing attachments with filenames.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0151

больше 22 лет назад

Unknown vulnerability in xitalk 1.1.11 and earlier allows local users to execute arbitrary commands.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2004-0150

больше 22 лет назад

Buffer overflow in the getaddrinfo function in Python 2.2 before 2.2.2, when IPv6 support is disabled, allows remote attackers to execute arbitrary code via an IPv6 address that is obtained using DNS.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-0149

около 22 лет назад

Multiple buffer overflows in xboing before 2.4 allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2004-0148

больше 22 лет назад

wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2004-0147

около 9 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

EPSS: Низкий
nvd логотип

CVE-2004-0146

около 9 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

EPSS: Низкий
nvd логотип

CVE-2004-0145

около 9 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

EPSS: Низкий
nvd логотип

CVE-2004-0144

около 9 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2004-0163

Sygate Secure Enterprise (SSE) 3.5MR3 and earlier does not change the key used to encrypt data, which allows remote attackers to cause a denial of service (resource exhaustion) by capturing a session and repeatedly replaying the session.

CVSS2: 5
2%
Низкий
почти 22 года назад
nvd логотип
CVE-2004-0162

Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME encapsulation that uses RFC822 comment fields, which may be interpreted as other fields by mail clients.

CVSS2: 7.5
2%
Низкий
почти 22 года назад
nvd логотип
CVE-2004-0161

Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use RFC2231 encoding, which may be interpreted differently by mail clients.

CVSS2: 7.5
2%
Низкий
почти 22 года назад
nvd логотип
CVE-2004-0160

Synaesthesia 2.2 and earlier allows local users to execute arbitrary code via a symlink attack on the configuration file.

CVSS2: 7.2
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0159

Format string vulnerability in hsftp 1.11 allows remote authenticated users to cause a denial of service and possibly execute arbitrary code via file names containing format string characters that are not properly handled when executing an "ls" command.

CVSS2: 7.5
9%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0158

Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable to (1) editor.c, (2) theme.c, (3) manager.c, (4) config.c, (5) game.c, (6) levels.c, or (7) main.c.

CVSS2: 4.6
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0157

x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.

CVSS2: 4.6
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2004-0156

Format string vulnerabilities in the (1) die or (2) log_event functions for ssmtp before 2.50.6 allow remote mail relays to cause a denial of service and possibly execute arbitrary code.

CVSS2: 5
4%
Низкий
около 22 лет назад
nvd логотип
CVE-2004-0155

The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.

CVSS2: 7.5
4%
Низкий
около 22 лет назад
nvd логотип
CVE-2004-0154

rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup name is different from the forward lookup name.

CVSS2: 5
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2004-0153

Multiple format string vulnerabilities in emil 2.1.0 and earlier may allow remote attackers to execute arbitrary code by triggering certain error messages.

CVSS2: 7.5
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0152

Multiple stack-based buffer overflows in (1) the encode_mime function, (2) the encode_uuencode function, (3) or the decode_uuencode function for emil 2.1.0 and earlier allow remote attackers to execute arbitrary code via e-mail messages containing attachments with filenames.

CVSS2: 7.5
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0151

Unknown vulnerability in xitalk 1.1.11 and earlier allows local users to execute arbitrary commands.

CVSS2: 7.2
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0150

Buffer overflow in the getaddrinfo function in Python 2.2 before 2.2.2, when IPv6 support is disabled, allows remote attackers to execute arbitrary code via an IPv6 address that is obtained using DNS.

CVSS2: 7.5
5%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0149

Multiple buffer overflows in xboing before 2.4 allow local users to gain privileges.

CVSS2: 4.6
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2004-0148

wu-ftpd 2.6.2 and earlier, with the restricted-gid option enabled, allows local users to bypass access restrictions by changing the permissions to prevent access to their home directory, which causes wu-ftpd to use the root directory instead.

CVSS2: 7.2
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2004-0147

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

около 9 лет назад
nvd логотип
CVE-2004-0146

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

около 9 лет назад
nvd логотип
CVE-2004-0145

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

около 9 лет назад
nvd логотип
CVE-2004-0144

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2004. Notes: none

около 9 лет назад

Уязвимостей на страницу