|
344361
|
- |
|
xscreensaver
|
xscreensaver
|
This vulnerability is addressed in the following product release:
XScreenSaver, XScreenSaver, 4.18
|
NVD-CWE-Other
|
CVE-2004-2655
|
2018-10-4 06:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344362
|
- |
|
sambar
|
sambar_server
|
Cross-site scripting (XSS) vulnerability in proxy.asp in Sambar Server 6.3 BETA 2 and possibly earlier versions allows remote attackers to inject arbitrary web script or HTML via the (1) Remote Proxy…
|
NVD-CWE-Other
|
CVE-2005-3506
|
2018-09-28 06:40 |
2005-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344363
|
- |
|
geeklog
|
geeklog
|
search.php in Geeklog 1.4.x before 1.4.0rc1, and 1.3.x before 1.3.11sr3, allows remote attackers to obtain sensitive information via invalid (1) datestart and (2) dateend parameters, which leaks the …
|
NVD-CWE-Other
|
CVE-2005-4026
|
2018-09-28 06:39 |
2005-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344364
|
- |
|
sophos
|
sophos_anti-virus
|
Sophos Anti-Virus before 4.02, 4.5.x before 4.5.9, 4.6.x before 4.6.9, and 5.x before 5.1.4 allow remote attackers to hide arbitrary files and data via crafted ARJ archives, which are not properly sc…
|
NVD-CWE-Other
|
CVE-2005-4680
|
2018-09-28 06:39 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344365
|
- |
|
bea
|
weblogic_server
|
HTTP request smuggling vulnerability in BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier allows remote attackers to inject arbitrary HTTP hea…
|
NVD-CWE-Other
|
CVE-2005-4749
|
2018-09-28 06:39 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344366
|
- |
|
bea
|
weblogic_server
|
Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Server and WebLogic Express 9.0, 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier allow remote attackers to inject…
|
NVD-CWE-Other
|
CVE-2005-4751
|
2018-09-28 06:39 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344367
|
- |
|
bea
|
weblogic_server
|
BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP6 and earlier, might allow local users to gain privileges by using the run-as deployment descriptor element to change the privi…
|
NVD-CWE-Other
|
CVE-2005-4752
|
2018-09-28 06:39 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344368
|
- |
|
bea
|
weblogic_server
|
BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP6 and earlier, in certain "heavy usage" scenarios, report incorrect severity levels for an audit event, which might allow attac…
|
NVD-CWE-Other
|
CVE-2005-4753
|
2018-09-28 06:39 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344369
|
- |
|
bea
|
weblogic_server
|
BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier allow remote attackers to obtain sensitive information (intranet IP addresses) via unknown attack vectors involving "network address trans…
|
NVD-CWE-Other
|
CVE-2005-4754
|
2018-09-28 06:38 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344370
|
- |
|
bea
|
weblogic_server
|
BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier (1) stores the private key passphrase (CustomTrustKeyStorePassPhrase) in cleartext in nodemanager.config; or, during domain creation with …
|
NVD-CWE-Other
|
CVE-2005-4755
|
2018-09-28 06:38 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|