CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2004-2412

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitrary SQL commands via the catalogid parameter in (1) shopreviewlist.asp and (2) shopreviewadd.asp.

    Published: 31 Dec 2004
    2.1
    Low

    CVE-2004-2419

    Last Modified: 16 Apr 2026

    Keene Digital Media Server 1.0.2 allows local users to obtain usernames and passwords by reading the dmscore.db file on the local system.

    Published: 31 Dec 2004
    5
    Medium

    CVE-2004-2426

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to bypass authentication via a .. (dot dot) in an HTTP POST request to ServerManager.srv, then use these privileges to conduct other activities, such as modifying files using editcgi.cgi.

    Published: 31 Dec 2004
    7.5
    High

    CVE-2004-2324

    Last Modified: 24 Apr 2026

    SQL injection vulnerability in DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to modify the backend database via the (1) table and (2) field parameters in LinkClick.aspx.

    Published: 31 Dec 2004
    4.4
    Medium

    CVE-2004-2731

    Last Modified: 16 Apr 2026

    Multiple integer overflows in Sbus PROM driver (drivers/sbus/char/openprom.c) for the Linux kernel 2.4.x up to 2.4.27, 2.6.x up to 2.6.7, and possibly later versions, allow local users to execute arbitrary code by specifying (1) a small buffer size to the copyin_string function or (2) a negative buffer size to the copyin function.

    Published: 31 Dec 2004
    7.5
    High

    CVE-2004-2779

    Last Modified: 20 Nov 2024

    id3_utf16_deserialize() in utf16.c in libid3tag through 0.15.1b misparses ID3v2 tags encoded in UTF-16 with an odd number of bytes, triggering an endless loop allocating memory until an OOM condition is reached, leading to denial-of-service (DoS).

    Published: 31 Dec 2004
    5
    Medium

    CVE-2004-1376

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.

    Published: 30 Dec 2004
    5
    Medium

    CVE-2004-1316

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote attackers to cause a denial of service (application crash) via an NNTP URL (news:) with a trailing '\' (backslash) character, which prevents a string from being NULL terminated.

    Published: 29 Dec 2004
    4.3
    Medium

    CVE-2004-1062

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ViewCVS 0.9.2 allow remote attackers to inject arbitrary HTML and web script via certain error messages.

    Published: 28 Dec 2004
    7.5
    High

    CVE-2004-1317

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attackers to execute arbitrary code via a long DNS command.

    Published: 27 Dec 2004
    2.1
    Low

    CVE-2004-1377

    Last Modified: 16 Apr 2026

    The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.

    Published: 27 Dec 2004
    7.5
    High

    CVE-2004-0998

    Last Modified: 16 Apr 2026

    Format string vulnerability in telnetd-ssl 0.17 and earlier allows remote attackers to execute arbitrary code.

    Published: 23 Dec 2004
    4.3
    Medium

    CVE-2004-2130

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in privmsg.php in phpBB 2.0.6 allow remote attackers to execute arbitrary script or HTML via the (1) folder or (2) mode variables.

    Published: 23 Dec 2004
    4.6
    Medium

    CVE-2004-1375

    Last Modified: 16 Apr 2026

    Unknown vulnerability in System Administration Manager (SAM) in HP-UX B.11.00, B.11.11, B.11.22, and B.11.23 allows local users to gain privileges.

    Published: 23 Dec 2004
    6.5
    Medium

    CVE-2004-1339

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the (1) MDSYS.SDO_GEOM_TRIG_INS1 and (2) MDSYS.SDO_LRS_TRIG_INS default triggers in Oracle 9i and 10g allows remote attackers to execute arbitrary SQL commands via the new.table_name or new.column_name parameters.

    Published: 23 Dec 2004
    5
    Medium

    CVE-2004-1305

    Last Modified: 16 Apr 2026

    The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang.

    Published: 23 Dec 2004
    5
    Medium

    CVE-2004-1361

    Last Modified: 16 Apr 2026

    Integer underflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows 2003 allows remote attackers to execute arbitrary code via a malformed .hlp file, which leads to a heap-based buffer overflow.

    Published: 23 Dec 2004
    7.5
    High

    CVE-2004-1373

    Last Modified: 16 Apr 2026

    Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via format string specifiers in a content URL, as demonstrated in the filename portion of a .mp3 file.

    Published: 23 Dec 2004
    2.1
    Low

    CVE-2004-1336

    Last Modified: 16 Apr 2026

    The xdvizilla script in tetex-bin 2.0.2 creates temporary files with predictable file names, which allows local users to overwrite arbitrary files via a symlink attack.

    Published: 23 Dec 2004
    7.2
    High

    CVE-2004-1337

    Last Modified: 16 Apr 2026

    The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a process that is launched before the module is loaded, which allows local users to gain privileges.

    Published: 23 Dec 2004
    6.5
    Medium

    CVE-2004-1338

    Last Modified: 16 Apr 2026

    The triggers in Oracle 9i and 10g allow local users to gain privileges by using a sequence of partially privileged actions: using CCBKAPPLROWTRIG or EXEC_CBK_FN_DML to add arbitrary functions to the SDO_CMT_DBK_FN_TABLE and SDO_CMT_CBK_DML_TABLE, then performing a DELETE on the SDO_TXN_IDX_INSERTS table, which causes the SDO_CMT_CBK_TRIG trigger to execute the user-supplied functions.

    Published: 23 Dec 2004
    10
    Critical

    CVE-2004-1236

    Last Modified: 16 Apr 2026

    Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers to execute arbitrary code.

    Published: 23 Dec 2004
    5
    Medium

    CVE-2006-0452

    Last Modified: 16 Apr 2026

    dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN operation with a DN that contains a large number of "," (comma) characters, which results in a large amount of recursion, as demonstrated using the ProtoVer LDAP test suite.

    Published: 23 Dec 2004
    7.2
    High

    CVE-2004-1313

    Last Modified: 16 Apr 2026

    The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before invoking help, which allows local users to gain privileges.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1298

    Last Modified: 16 Apr 2026

    Buffer overflow in the parse function in vb2c.c for vb2c 0.02 allows remote attackers to execute arbitrary code via a crafted FRM file.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1289

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in (1) the getline function in pcalutil.c and (2) the get_holiday function in readfile.c for pcal 4.7.1 allow remote attackers to execute arbitrary code via a crafted calendar file.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1280

    Last Modified: 16 Apr 2026

    The gui_popup_view_fly function in gui_tview_popup.c for junkie 0.3.1 allows remote malicious FTP servers to execute arbitrary commands via shell metacharacters in a filename.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1271

    Last Modified: 16 Apr 2026

    Buffer overflow in the dxfin function in d.c for dxfscope 0.2 allows remote attackers to execute arbitrary code via a crafted DXF file.

    Published: 22 Dec 2004
    7.2
    High

    CVE-2004-1054

    Last Modified: 16 Apr 2026

    Untrusted execution path vulnerability in invscout in IBM AIX 5.1.0, 5.2.0, and 5.3.0 allows local users to gain privileges by modifying the PATH environment variable to point to a malicious "uname" program, which is executed from lsvpd after lsvpd has been invoked by invscout.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1187

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the pnm_get_chunk function for xine 0.99.2, and other packages such as MPlayer that use the same code, allows remote attackers to execute arbitrary code via long PNA_TAG values, a different vulnerability than CVE-2004-1188.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1153

    Last Modified: 16 Apr 2026

    Format string vulnerability in Adobe Acrobat Reader 6.0.0 through 6.0.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an .ETD document containing format string specifiers in (1) title or (2) baseurl fields.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1188

    Last Modified: 16 Apr 2026

    The pnm_get_chunk function in xine 0.99.2 and earlier, and other packages such as MPlayer that use the same code, does not properly verify that the chunk size is less than the PREAMBLE_SIZE, which causes a read operation with a negative length that leads to a buffer overflow via (1) RMF_TAG, (2) DATA_TAG, (3) PROP_TAG, (4) MDPR_TAG, and (5) CONT_TAG values, a different vulnerability than CVE-2004-1187.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1256

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in the (1) event_text and (2) event_specific functions in abc2midi 2004.12.04 allow remote attackers to execute arbitrary code via crafted ABC files.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1261

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in the preparse function in asp2php 0.76.23 allow remote attackers to execute arbitrary code via crafted ASP scripts.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1262

    Last Modified: 16 Apr 2026

    Buffer overflow in the bsb_open_header function in libbsb for bsb2ppm 0.0.6 allows remote attackers to execute arbitrary code via crafted BSB pictures.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1264

    Last Modified: 16 Apr 2026

    Buffer overflow in the simplify_path function in config.c for ChBg 1.5 allows remote attackers to execute arbitrary code via a crafted chbg scenario file.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1272

    Last Modified: 16 Apr 2026

    Buffer overflow in the save_embedded_address function in filter.c for elm/bolthole filter 2.6.1 allows remote attackers to execute arbitrary code via a crafted email message.

    Published: 22 Dec 2004
    5
    Medium

    CVE-2004-1281

    Last Modified: 16 Apr 2026

    The ftp_retr function in junkie 0.3.1 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in a filename.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1299

    Last Modified: 16 Apr 2026

    Buffer overflow in the get_attr function in html.c for vilistextum 2.6.6 allows remote attackers to execute arbitrary code via a crafted web page.

    Published: 22 Dec 2004
    7.2
    High

    CVE-2004-1028

    Last Modified: 16 Apr 2026

    Untrusted execution path vulnerability in chcod on AIX IBM 5.1.0, 5.2.0, and 5.3.0 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious "grep" program, which is executed from chcod.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1172

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the Agent Browser in Veritas Backup Exec 8.x before 8.60.3878 Hotfix 68, and 9.x before 9.1.4691 Hotfix 40, allows remote attackers to execute arbitrary code via a registration request with a long hostname.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1255

    Last Modified: 16 Apr 2026

    Buffer overflow in the expandtabs function in 2fax 3.04 allows remote attackers to execute arbitrary code via a text file that is converted to TIFF.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1257

    Last Modified: 16 Apr 2026

    Buffer overflow in the process_abc function in abc.c for abc2mtex 1.6.1 allows remote attackers to execute arbitrary code via crafted ABC files.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1258

    Last Modified: 16 Apr 2026

    Buffer overflow in the put_words function in subs.c for abcm2ps 3.7.20 allows remote attackers to execute arbitrary code via crafted ABC files.

    Published: 22 Dec 2004
    7.2
    High

    CVE-2004-1263

    Last Modified: 16 Apr 2026

    changepassword.cgi in ChangePassword 0.8, when installed setuid, allows local users to execute arbitrary code by modifying the PATH environment variable to point to a malicious "make" program.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1265

    Last Modified: 16 Apr 2026

    Buffer overflow in the readObjectChunk function in 3dsimp.cpp for the convex-tool program in Convex 3D 0.8pre1 allows remote attackers to execute arbitrary code via a crafted 3DS file.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1282

    Last Modified: 16 Apr 2026

    Buffer overflow in the strexpand function in string.c for LinPopUp 1.2.0 allows remote attackers to execute arbitrary code via a crafted message that is not properly handled during a Reply operation.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1290

    Last Modified: 16 Apr 2026

    Buffer overflow in the process_moves function in pgn2web.c for pgn2web 0.3 allows remote attackers to execute arbitrary code via a crafted PGN file.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1300

    Last Modified: 16 Apr 2026

    Buffer overflow in the open_aiff_file function in demux_aiff.c for xine-lib (libxine) 1-rc7 allows remote attackers to execute arbitrary code via a crafted AIFF file.

    Published: 22 Dec 2004
    10
    Critical

    CVE-2004-1309

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the demux_open_bmp function in demux_bmp.c for Unix MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a bitmap (BMP) file containing a large biClrUsed field.

    Published: 22 Dec 2004