268801
|
- |
|
cisco
|
secure_access_control_server secure_acs_solution_engine
|
Cisco Secure Access Control Server (ACS) 3.2(3) and earlier, when configured with an anonymous bind in Novell Directory Services (NDS) and authenticating NDS users with NDS, allows remote attackers t…
|
NVD-CWE-Other
|
CVE-2004-1460
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268802
|
- |
|
cisco
|
secure_access_control_server secure_acs_solution_engine
|
Cisco Secure Access Control Server (ACS) 3.2(3) and earlier spawns a separate unauthenticated TCP connection on a random port when a user authenticates to the ACS GUI, which allows remote attackers t…
|
NVD-CWE-Other
|
CVE-2004-1461
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268803
|
- |
|
moinmoin
|
moinmoin
|
Unknown vulnerability in MoinMoin 1.2.2 and earlier allows remote attackers to gain unauthorized access to administrator functions such as (1) revert and (2) delete.
|
NVD-CWE-Other
|
CVE-2004-1462
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268804
|
- |
|
moinmoin
|
moinmoin
|
Unknown vulnerability in the PageEditor in MoinMoin 1.2.2 and earlier, related to Access Control Lists (ACL), has unknown impact.
|
NVD-CWE-Other
|
CVE-2004-1463
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268805
|
- |
|
winzip
|
winzip
|
Multiple buffer overflows in WinZip 9.0 and earlier may allow attackers to execute arbitrary code via multiple vectors, including the command line.
|
NVD-CWE-Other
|
CVE-2004-1465
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268806
|
- |
|
gallery_project
|
gallery
|
The set_time_limit function in Gallery before 1.4.4_p2 deletes non-image files in a temporary directory every 30 seconds after they have been uploaded using save_photos.php, which allows remote attac…
|
NVD-CWE-Other
|
CVE-2004-1466
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268807
|
- |
|
egroupware
|
egroupware
|
Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.0.00.003 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) date or search text field in the calenda…
|
NVD-CWE-Other
|
CVE-2004-1467
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268808
|
- |
|
usermin webmin
|
usermin webmin
|
The web mail functionality in Usermin 1.x and Webmin 1.x allows remote attackers to execute arbitrary commands via shell metacharacters in an e-mail message.
|
NVD-CWE-Other
|
CVE-2004-1468
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268809
|
- |
|
peter_d._gray
|
sus
|
Format string vulnerability in the log function in SUS 2.0.2, and other versions before 2.0.6, allows local users to execute arbitrary code via format string specifiers in a command line argument tha…
|
NVD-CWE-Other
|
CVE-2004-1469
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268810
|
- |
|
snipsnap
|
snipsnap
|
CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server.
|
NVD-CWE-Other
|
CVE-2004-1470
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|