268271
|
- |
|
microsoft
|
ie
|
Internet Explorer 6 on Windows XP SP2 allows remote attackers to bypass the file download warning dialog and possibly trick an unknowledgeable user into executing arbitrary code via a web page with a…
|
NVD-CWE-Other
|
CVE-2005-0110
|
2016-10-18 12:07 |
2005-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268272
|
- |
|
microsoft
|
outlook_express
|
Microsoft Outlook Express 6.0 allows remote attackers to bypass intended access restrictions, load content from arbitrary sources into the Outlook context, and facilitate phishing attacks via a "BASE…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2004-2694
|
2016-10-18 12:07 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268273
|
- |
|
geovision
|
geohttpserver
|
GeoHttpServer, when configured to authenticate users, allows remote attackers to bypass authentication and access unauthorized files via a URL that contains %0a%0a (encoded newlines).
|
NVD-CWE-Other
|
CVE-2004-2100
|
2016-10-18 12:06 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268274
|
- |
|
phorum
|
phorum
|
SQL injection vulnerability in register.php in Phorum before 3.4.6 allows remote attackers to execute arbitrary SQL commands via the hide_email parameter.
|
NVD-CWE-Other
|
CVE-2004-2110
|
2016-10-18 12:06 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268275
|
- |
|
iss
|
blackice_pc_protection
|
The upgrade for BlackICE PC Protection 3.6 and earlier sets insecure permissions for .INI files such as (1) blackice.ini, (2) firewall.ini, (3) protect.ini, or (4) sigs.ini, which allows local users …
|
NVD-CWE-Other
|
CVE-2004-2126
|
2016-10-18 12:06 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268276
|
- |
|
phpbb_group
|
phpbb
|
Multiple cross-site scripting (XSS) vulnerabilities in privmsg.php in phpBB 2.0.6 allow remote attackers to execute arbitrary script or HTML via the (1) folder or (2) mode variables.
|
NVD-CWE-Other
|
CVE-2004-2130
|
2016-10-18 12:06 |
2004-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268277
|
- |
|
linux
|
linux_kernel
|
cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decr…
|
NVD-CWE-Other
|
CVE-2004-2135
|
2016-10-18 12:06 |
2004-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268278
|
- |
|
linux
|
linux_kernel
|
dm-crypt on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryp…
|
NVD-CWE-Other
|
CVE-2004-2136
|
2016-10-18 12:06 |
2004-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268279
|
- |
|
esesix
|
thintune
|
eSeSIX Thintune thin clients running firmware 2.4.38 and earlier accept any password that begins with the actual password, which makes it easier for users to conduct brute force password guessing.
|
NVD-CWE-Other
|
CVE-2004-2052
|
2016-10-18 12:05 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268280
|
- |
|
francisco_burzi
|
php-nuke
|
The Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to gain sensitive information via an invalid show parameter to modules.php, which reveals the full path in a PHP error message.
|
NVD-CWE-Other
|
CVE-2004-1998
|
2016-10-18 12:04 |
2004-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|