267591
|
- |
|
herberlin
|
bremsserver
|
Directory traversal vulnerability in BremsServer 1.2.4 allows remote attackers to read arbitrary files via ".." (dot dot) sequences in the URL.
|
NVD-CWE-Other
|
CVE-2004-2112
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267592
|
- |
|
herberlin
|
bremsserver
|
Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the URL.
|
NVD-CWE-Other
|
CVE-2004-2113
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267593
|
- |
|
internetnow
|
proxynow
|
Stack-based and heap-based buffer overflows in ProxyNow! 2.75 and earlier allow remote attackers to execute arbitrary code via a GET request with a long ftp:// URL.
|
NVD-CWE-Other
|
CVE-2004-2114
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267594
|
- |
|
oracle
|
http_server
|
Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attackers to execute arbitrary script as other users via the (1) action, (2) username, …
|
NVD-CWE-Other
|
CVE-2004-2115
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267595
|
- |
|
reptile_web_server
|
reptile_web_server
|
Reptile Web Server allows remote attackers to cause a denial of service (CPU consumption) via multiple incomplete GET requests without the HTTP version.
|
NVD-CWE-Other
|
CVE-2004-2120
|
2017-07-11 10:31 |
2004-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267596
|
- |
|
borland_software
|
web_server_for_corel_paradox
|
Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to read and download arbitrary files via (1) multi-dot "......" sequences, or (2) "%5…
|
NVD-CWE-Other
|
CVE-2004-2121
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267597
|
- |
|
intra_forum
|
intra_forum
|
Cross-site scripting (XSS) vulnerability in intraforum_db.cgi in Intra Forum allows remote attackers to inject arbitrary web script or HTML via the (1) use_last_read or (2) forum parameters.
|
NVD-CWE-Other
|
CVE-2004-2122
|
2017-07-11 10:31 |
2004-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267598
|
- |
|
nextplace
|
e-commerce_asp_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in Nextplace.com E-Commerce ASP Engine allow remote attackers to inject arbitrary web script or HTML via the (1) level parameter of productdetail.a…
|
NVD-CWE-Other
|
CVE-2004-2123
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267599
|
- |
|
gallery_project
|
gallery
|
The register_globals simulation capability in Gallery 1.3.1 through 1.4.1 allows remote attackers to modify the HTTP_POST_VARS variable and conduct a PHP remote file inclusion attack via the GALLERY_…
|
NVD-CWE-Other
|
CVE-2004-2124
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267600
|
- |
|
iss
|
blackice_agent_server blackice_pc_protection blackice_server_protection realsecure_desktop
|
Buffer overflow in blackd.exe for BlackICE PC Protection 3.6 and other versions before 3.6.ccb, with application protection off, allows local users to gain system privileges by modifying the .INI fil…
|
NVD-CWE-Other
|
CVE-2004-2125
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|