VYPR

CVEs

340,754 total · page 6626 of 6,816

  • CVE-2004-2564Dec 31, 2004
    risk 0.03cvss epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server 6.1 Beta 2 on Windows, and possibly other versions on Linux, allow remote attackers to inject arbitrary web script or HTML via (1) the show parameter in show.asp and (2) the title parameter in showperf.asp.

  • CVE-2004-2565Dec 31, 2004
    risk 0.04cvss epss 0.08

    Multiple directory traversal vulnerabilities in Sambar Server 6.1 Beta 2 on Windows, and possibly other versions on Linux, when the administrative IP address restrictions have been modified from the default, allow remote authenticated users to read arbitrary files via (1) a…

  • CVE-2004-2566Dec 31, 2004
    risk 0.03cvss epss 0.01

    Multiple cross-site scripting (XSS) vulnerabilities in LiveWorld products, possibly including (1) LiveForum, (2) LiveQ&A, (3) LiveChat, and (4) LiveFocusGroup, allow remote attackers to inject arbitrary web script or HTML via the q parameter in (a) search.jsp, (b)…

  • CVE-2004-2567Dec 31, 2004
    risk 0.00cvss epss 0.01

    Multiple SQL injection vulnerabilities in ReciPants 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) user id, (2) recipe id, (3) category id, and (4) other ID number fields.

  • CVE-2004-2568Dec 31, 2004
    risk 0.00cvss epss 0.00

    Multiple cross-site scripting (XSS) vulnerabilities in ReciPants 1.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) user id, (2) recipe id, (3) category id, and (4) other ID number fields.

  • CVE-2004-2569Dec 31, 2004
    risk 0.00cvss epss 0.00

    ipmenu 0.0.3 before Debian GNU/Linux ipmenu_0.0.3-5 allows local users to overwrite arbitrary files via a symlink attack on the ipmenu.log temporary file.

  • CVE-2004-2570Dec 31, 2004
    risk 0.00cvss epss 0.01

    Opera before 7.54 allows remote attackers to modify properties and methods of the location object and execute Javascript to read arbitrary files from the client's local filesystem or display a false URL to the user.

  • CVE-2004-2571Dec 31, 2004
    risk 0.00cvss epss 0.04

    Multiple buffer overflows in EnderUNIX isoqlog 2.1.1 allow remote attackers to execute arbitrary code via the (1) parseQmailFromBytesLine, (2) parseQmailToRemoteLine, (3) parseQmailToLocalLine, (4) parseSendmailFromBytesLine, (5) parseSendmailToLine, (6) parseEximFromBytesLine,…

  • CVE-2004-2572Dec 31, 2004
    risk 0.00cvss epss 0.01

    AMAX Magic Winmail Server 3.6 allows remote attackers to obtain sensitive information by entering (1) invalid characters such as "()" or (2) a large number of characters in the Lookup field on the netaddressbook.php web form, which reveals the path in an ldaplib.php error…

  • CVE-2004-2573Dec 31, 2004
    risk 0.03cvss epss 0.02

    PHP remote file inclusion vulnerability in tables_update.inc.php in phpGroupWare 0.9.14.005 and earlier allows remote attackers to execute arbitrary PHP code via an external URL in the appdir parameter.

  • CVE-2004-2574Dec 31, 2004
    risk 0.03cvss epss 0.03

    Cross-site scripting (XSS) vulnerability in index.php in phpGroupWare 0.9.14.005 and earlier allows remote attackers to inject arbitrary web script or HTML via the date parameter in a calendar.uicalendar.planner menuaction.

  • CVE-2004-2575Dec 31, 2004
    risk 0.00cvss epss 0.01

    phpGroupWare 0.9.14.005 and earlier allow remote attackers to obtain sensitive information via a direct request to (1) hook_admin.inc.php, (2) hook_home.inc.php, (3) class.holidaycalc.inc.php, and (4) setup.inc.php.sample, which reveals the path in an error message.

  • CVE-2004-2576Dec 31, 2004
    risk 0.00cvss epss 0.00

    class.vfs_dav.inc.php in phpGroupWare 0.9.16.000 does not create .htaccess files to enable authorization checks for access to users' home-directory files, which allows remote attackers to obtain sensitive information from these files.

  • CVE-2004-2577Dec 31, 2004
    risk 0.00cvss epss 0.00

    The acl_check function in phpGroupWare 0.9.16RC2 always returns True, even when mkdir does not behave as expected, which could allow remote attackers to obtain sensitive information via WebDAV from users' home directories that lack .htaccess files, and possibly has other unknown…

  • CVE-2004-2578Dec 31, 2004
    risk 0.00cvss epss 0.00

    phpGroupWare before 0.9.16.002 transmits the (1) header admin and (2) setup passwords in plaintext via cookies, which allows remote attackers to sniff passwords.

  • CVE-2004-2579Dec 31, 2004
    risk 0.00cvss epss 0.00

    ACLCHECK module in Novell iChain 2.3 allows attackers to bypass access control rules of an unspecified component via an unspecified attack vector involving a string that contains escape sequences represented with "overlong UTF-8 encoding."

  • CVE-2004-2580Dec 31, 2004
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in Novell iChain 2.3 allows remote attackers to obtain login credentials via unspecified vectors.

  • CVE-2004-2581Dec 31, 2004
    risk 0.00cvss epss 0.01

    Novell iChain 2.3 allows attackers to cause a denial of service via a URL with a "specific string."

  • CVE-2004-2582Dec 31, 2004
    risk 0.00cvss epss 0.01

    Novell iChain 2.3 includes the build number in the VIA line of the proxy server's HTTP headers, which allows remote attackers to obtain sensitive information.

  • CVE-2004-2583Dec 31, 2004
    risk 0.00cvss epss 0.01

    SMTP service in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service (CPU consumption) via a large number of simultaneous open connections to TCP port 25.

  • CVE-2004-2584Dec 31, 2004
    risk 0.00cvss epss 0.00

    frmAddfolder.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote authenticated users to create a folder that SmarterMail cannot delete or rename via a folder name with a null byte ("%00"). NOTE: it is not clear whether this issue poses a vulnerability.

  • CVE-2004-2585Dec 31, 2004
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in frmCompose.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to inject arbitrary web script or HTML via Javascript to the "check spelling" feature in the compose area.

  • CVE-2004-2586Dec 31, 2004
    risk 0.00cvss epss 0.01

    Directory traversal vulnerability in frmGetAttachment.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to read arbitrary files via the filename parameter.

  • CVE-2004-2587Dec 31, 2004
    risk 0.00cvss epss 0.01

    login.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service via a long txtusername parameter, possibly due to a buffer overflow.

  • CVE-2004-2588Dec 31, 2004
    risk 0.00cvss epss 0.01

    Intentional information leak in phpinfo.php in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allows remote attackers to obtain sensitive information such as the configuration of the web server and the PHP application.

  • CVE-2004-2589Dec 31, 2004
    risk 0.00cvss epss 0.01

    Gaim before 0.82 allows remote servers to cause a denial of service (application crash) via a long HTTP Content-Length header, which causes Gaim to abort when attempting to allocate memory.

  • CVE-2004-2590Dec 31, 2004
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in meindlSOFT Cute PHP Library (aka cphplib) 0.46 has unknown impact and attack vectors, related to regular expressions.

  • CVE-2004-2591Dec 31, 2004
    risk 0.00cvss epss 0.00

    The data-overwrite capability of ButtUglySoftware CleanCache 2.19 does not properly overwrite data in files, which allows attackers to recover the data.

  • CVE-2004-2592Dec 31, 2004
    risk 0.03cvss epss 0.05

    Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (application crash) via a modified client that asks the server to send data stored at a negative array offset, which is not handled when processing Configstrings and…

  • CVE-2004-2593Dec 31, 2004
    risk 0.00cvss epss 0.04

    Buffer overflow in command-packet processing of Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a packet with a long cmd_args buffer.

  • CVE-2004-2594Dec 31, 2004
    risk 0.00cvss epss 0.01

    Absolute path traversal vulnerability in Quake II server before R1Q2 on Windows, as used in multiple products, allows remote attackers to read arbitrary files via a "\/" in a pathname argument, as demonstrated by "download \/server.cfg".

  • CVE-2004-2595Dec 31, 2004
    risk 0.00cvss epss 0.02

    Absolute path traversal vulnerability in Quake II server before R1Q2 on Linux, as used in multiple products, allows remote attackers to cause a denial of service (application crash) via a download command with a full pathname for a directory in the argument, which causes the…

  • CVE-2004-2596Dec 31, 2004
    risk 0.00cvss epss 0.01

    Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (exhaustion of connection slots) via a large number of connections from the same IP address.

  • CVE-2004-2597Dec 31, 2004
    risk 0.00cvss epss 0.00

    Quake II server before R1Q2, as used in multiple products, allows remote attackers to bypass IP-based access control rules via a userinfo string that already contains an "ip" key/value pair but is also long enough to cause a new key/value pair to be truncated, which interferes…

  • CVE-2004-2598Dec 31, 2004
    risk 0.00cvss epss 0.00

    Quake II server before R1Q2, as used in multiple products, allows remote attackers to corrupt the server's client state data structure by exiting a session without a valid disconnect command, then reconnecting, which prevents a mod from being notified of changes in the client…

  • CVE-2004-2599Dec 31, 2004
    risk 0.00cvss epss 0.00

    Multiple buffer overflows in Quake II server before R1Q2, as used in multiple products, allow local users to cause a denial of service (application crash) via the server console or rcon.

  • CVE-2004-2600Dec 31, 2004
    risk 0.00cvss epss 0.01

    The firmware for Intelligent Platform Management Interface (IPMI) 1.5-based Intel Server Boards and Platforms is shipped with an Authentication Type Enables parameter set to an invalid None parameter, which allows remote attackers to obtain sensitive information when LAN…

  • CVE-2004-2601Dec 31, 2004
    risk 0.00cvss epss 0.00

    PHP remote file inclusion vulnerability in UberTec Help Center Live (HCL) allows remote attackers to read local files and possibly execute PHP code via a URL in the SKIN_inner parameter to inc/skin.php.

  • CVE-2004-2602Dec 31, 2004
    risk 0.00cvss epss 0.02

    PHP remote file inclusion vulnerability in UberTec Help Center Live (HCL) before 1.2.7 allows remote attackers to execute arbitrary PHP code via a URL in the HCL_path parameter to pipe.php.

  • CVE-2004-2603Dec 31, 2004
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in the Search module in UberTec Help Center Live (HCL) allows remote attackers to inject arbitrary web script or HTML via the find parameter to index.php.

  • CVE-2004-2604Dec 31, 2004
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in index.php in PHProxy allows remote attackers to inject arbitrary web script or HTML via the error parameter.

  • CVE-2004-2605Dec 31, 2004
    risk 0.00cvss epss 0.00

    aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files.

  • CVE-2004-2606Dec 31, 2004
    risk 0.00cvss epss 0.03

    The Web interface in Linksys WRT54G 2.02.7 and BEFSR41 version 3, with the firewall disabled, allows remote attackers to attempt to login to an administration web page, even when the configuration specifies that remote administration is disabled.

  • CVE-2004-2607Dec 31, 2004
    risk 0.00cvss epss 0.00

    A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users to read portions of kernel memory via a large len argument, which is received as an int but cast to a short, which prevents a read loop from filling a buffer.

  • CVE-2004-2608Dec 31, 2004
    risk 0.00cvss epss 0.00

    SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the unencrypted username and password of the administrator's…

  • CVE-2004-2609Dec 31, 2004
    risk 0.00cvss epss 0.00

    The stuffit.com executable on Symantec PowerQuest DeployCenter 5.5 boot disks allows local users to obtain sensitive information (an unencrypted password for a Windows domain account) via four "stuffit /f:stuffit.dat" invocations, possibly due to a buffer overflow.

  • CVE-2004-2610Dec 31, 2004
    risk 0.00cvss epss 0.00

    mntd_mount.c in mntd before 0.4.2 might allow local users to gain privileges via shell metacharacters in a remount option in the configuration file. NOTE: It is not clear whether this is a vulnerability because there is not necessarily any common usage in which privilege…

  • CVE-2004-2611Dec 31, 2004
    risk 0.00cvss epss 0.00

    The Change Permissions function in the Sophster suite before 0.9.6 28 May 2004 (aka 0.9.6-r5), possibly including Sophster, FreeSophster, and FreeSophsterPAM, removes the (1) setuid, (2) setgid, and (3) sticky bits when changing a file, which might allow attackers to gain…

  • CVE-2004-2612Dec 31, 2004
    risk 0.00cvss epss 0.01

    BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users.

  • CVE-2004-2613Dec 31, 2004
    risk 0.00cvss epss 0.00

    Unspecified vulnerability in procfs in the Linux-VServer stable branch for the 2.4 kernel before 1.23 and Linux-VServer development branch for the 2.4 kernel before 1.3.5 has unspecified impact and attack vectors, related to "write access to specific proc entries from a vserver…