266871
|
- |
|
phorum
|
phorum
|
Multiple cross-site scripting (XSS) vulnerabilities in Phorum 3.4.5 and earlier allow remote attackers to inject arbitrary HTML or web script via (1) the phorum_check_xss function in common.php, (2) …
|
NVD-CWE-Other
|
CVE-2004-0034
|
2017-07-11 10:29 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266872
|
- |
|
opentext
|
opentext_firstclass_desktop_client
|
FirstClass Desktop Client 7.1 allows remote attackers to execute arbitrary commands via hyperlinks in FirstClass RTF messages.
|
NVD-CWE-Other
|
CVE-2004-0037
|
2017-07-11 10:29 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266873
|
- |
|
mcafee
|
epolicy_orchestrator
|
McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3 allows remote attackers to execute arbitrary commands via certain HTTP POST requests to the spipe/file handler on ePO TCP port 81.
|
NVD-CWE-Other
|
CVE-2004-0038
|
2017-07-11 10:29 |
2004-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266874
|
- |
|
checkpoint
|
firewall-1
|
Multiple format string vulnerabilities in HTTP Application Intelligence (AI) component in Check Point Firewall-1 NG-AI R55 and R54, and Check Point Firewall-1 HTTP Security Server included with NG FP…
|
NVD-CWE-Other
|
CVE-2004-0039
|
2017-07-11 10:29 |
2004-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266875
|
- |
|
yahoo
|
messenger
|
Buffer overflow in Yahoo Instant Messenger 5.6.0.1351 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long filename in the download …
|
NVD-CWE-Other
|
CVE-2004-0043
|
2017-07-11 10:29 |
2004-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266876
|
- |
|
-
|
-
|
Cross-site scripting (XSS) vulnerability in SnapStream PVS LITE allows remote attackers to inject arbitrary web script or HTML via a GET request containing a terminating '"' (double quote) character.
|
NVD-CWE-Other
|
CVE-2004-0046
|
2017-07-11 10:29 |
2004-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266877
|
- |
|
yamamoto_hirotaka
|
trr19
|
Multiple programs in trr19 1.0 do not properly drop privileges before executing a system command, which could allow local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2004-0047
|
2017-07-11 10:29 |
2004-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266878
|
- |
|
verity
|
ultraseek
|
Verity Ultraseek before 5.2.2 allows remote attackers to obtain the full pathname of the document root via an MS-DOS device name in the web search option, such as (1) NUL, (2) CON, (3) AUX, (4) COM1,…
|
NVD-CWE-Other
|
CVE-2004-0050
|
2017-07-11 10:29 |
2004-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266879
|
- |
|
clearswift f-secure paul_l_daniels
|
mailsweeper internet_gatekeeper ripmime
|
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard but frequently supported Content-Transfer-Encodi…
|
NVD-CWE-Other
|
CVE-2004-0051
|
2017-07-11 10:29 |
2004-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266880
|
- |
|
clearswift f-secure paul_l_daniels
|
mailsweeper internet_gatekeeper ripmime
|
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard separator characters, or use standard separators…
|
NVD-CWE-Other
|
CVE-2004-0052
|
2017-07-11 10:29 |
2004-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|