266271
|
- |
|
phpbb_group
|
phpbb
|
viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by …
|
NVD-CWE-Other
|
CVE-2004-1315
|
2017-07-11 10:30 |
2004-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266272
|
- |
|
-
|
-
|
Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attackers to execute arbitrary code via a long DNS command.
|
NVD-CWE-Other
|
CVE-2004-1317
|
2017-07-11 10:30 |
2004-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266273
|
- |
|
namazu
|
namazu
|
Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject arbitrary HTML and web script via a query that starts with a tab ("%09") charact…
|
NVD-CWE-Other
|
CVE-2004-1318
|
2017-07-11 10:30 |
2005-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266274
|
- |
|
asante
|
fm2008_managed_ethernet_switch
|
Asante FM2008 running firmware 1.06 is shipped with a default username and password, which could allow remote attackers to gain unauthorized access.
|
NVD-CWE-Other
|
CVE-2004-1320
|
2017-07-11 10:30 |
2004-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266275
|
- |
|
cisco
|
unity_server
|
Cisco Unity 2.x, 3.x, and 4.x, when integrated with Microsoft Exchange, has several hard coded usernames and passwords, which allows remote attackers to gain unauthorized access and change configurat…
|
NVD-CWE-Other
|
CVE-2004-1322
|
2017-07-11 10:30 |
2004-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266276
|
- |
|
netbsd
|
netbsd
|
Multiple syscalls in the compat subsystem for NetBSD before 2.0 allow local users to cause a denial of service (kernel crash) via a large signal number to (1) xxx_sys_kill, (2) xxx_sys_sigaction, and…
|
NVD-CWE-Other
|
CVE-2004-1323
|
2017-07-11 10:30 |
2004-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266277
|
- |
|
microsoft
|
windows_media_player
|
The Microsoft Windows Media Player 9.0 ActiveX control may allow remote attackers to execute arbitrary web script in the Local computer zone via the (1) artist or (2) song fields of a music file, if …
|
NVD-CWE-Other
|
CVE-2004-1324
|
2017-07-11 10:30 |
2004-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266278
|
- |
|
microsoft
|
windows_media_player
|
The getItemInfoByAtom function in the ActiveX control for Microsoft Windows Media Player 9.0 returns a 0 if the file does not exist and the size of the file if the file exists, which allows remote at…
|
NVD-CWE-Other
|
CVE-2004-1325
|
2017-07-11 10:30 |
2004-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266279
|
- |
|
ultrix
|
dxterm
|
Buffer overflow in dxterm in Ultrix 4.5 allows local users to execute arbitrary code via a long -setup parameter.
|
NVD-CWE-Other
|
CVE-2004-1326
|
2017-07-11 10:30 |
2004-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266280
|
- |
|
crystal_art_software
|
crystal_ftp
|
Buffer overflow in Crystal FTP Client 2.8 allows remote malicious servers to execute arbitrary code via a response to a LIST command that contains a file name with a long extension.
|
NVD-CWE-Other
|
CVE-2004-1327
|
2017-07-11 10:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|