257011
|
- |
|
apache-ssl
|
apache-ssl
|
Apache-SSL 1.3.28+1.52 and earlier, with SSLVerifyClient set to 1 or 3 and SSLFakeBasicAuth enabled, allows remote attackers to forge a client certificate by using basic authentication with the "one-…
|
NVD-CWE-Other
|
CVE-2004-0009
|
2017-10-10 10:30 |
2004-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257012
|
- |
|
debian
|
fsp
|
Buffer overflow in fsp before 2.81.b18 allows remote users to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2004-0011
|
2017-10-10 10:30 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257013
|
- |
|
jabber_software_foundation
|
jabber_server
|
jabber 1.4.2, 1.4.2a, and possibly earlier versions, does not properly handle SSL connections, which allows remote attackers to cause a denial of service (crash).
|
NVD-CWE-Other
|
CVE-2004-0013
|
2017-10-10 10:30 |
2004-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257014
|
- |
|
vbox3
|
vbox3
|
vbox3 0.1.8 and earlier does not properly drop privileges before executing a user-provided TCL script, which allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2004-0015
|
2017-10-10 10:30 |
2004-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257015
|
- |
|
phpgroupware
|
phpgroupware
|
The calendar module for phpgroupware 0.9.14 does not enforce the "save extension" feature for holiday files, which allows remote attackers to create and execute PHP files.
|
NVD-CWE-Other
|
CVE-2004-0016
|
2017-10-10 10:30 |
2004-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257016
|
- |
|
samba
|
jitterbug
|
jitterbug 1.6.2 does not properly sanitize inputs, which allows remote authenticated users to execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2004-0028
|
2017-10-10 10:30 |
2004-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257017
|
- |
|
phpgedview
|
phpgedview
|
PHPGEDVIEW 2.61 allows remote attackers to reinstall the software and change the administrator password via a direct HTTP request to editconfig.php.
|
NVD-CWE-Other
|
CVE-2004-0031
|
2017-10-10 10:30 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257018
|
- |
|
phpgedview
|
phpgedview
|
Cross-site scripting (XSS) vulnerability in search.php in PHPGEDVIEW 2.61 allows remote attackers to inject arbitrary HTML and web script via the firstname parameter.
|
NVD-CWE-Other
|
CVE-2004-0032
|
2017-10-10 10:30 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257019
|
- |
|
phpgedview
|
phpgedview
|
admin.php in PHPGEDVIEW 2.61 allows remote attackers to obtain sensitive information via an action parameter with a phpinfo command.
|
NVD-CWE-Other
|
CVE-2004-0033
|
2017-10-10 10:30 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257020
|
- |
|
phorum
|
phorum
|
SQL injection vulnerability in register.php for Phorum 3.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the hide_email parameter.
|
NVD-CWE-Other
|
CVE-2004-0035
|
2017-10-10 10:30 |
2004-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|