CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2004-0934

    Last Modified: 16 Apr 2026

    Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Published: 19 Nov 2004
    7.5
    High

    CVE-2004-0935

    Last Modified: 16 Apr 2026

    Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Published: 19 Nov 2004
    7.5
    High

    CVE-2004-0937

    Last Modified: 16 Apr 2026

    Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Published: 19 Nov 2004
    5
    Medium

    CVE-2004-0939

    Last Modified: 16 Apr 2026

    changepassword.cgi in Neoteris Instant Virtual Extranet (IVE) 3.x and 4.x, with LDAP authentication or NT domain authentication enabled, does not limit the number of times a bad password can be entered, which allows remote attackers to guess passwords via a brute force attack.

    Published: 19 Nov 2004
    7.5
    High

    CVE-2004-0986

    Last Modified: 16 Apr 2026

    Iptables before 1.2.11, under certain conditions, does not properly load the required modules at system startup, which causes the firewall rules to fail to load and protect the system from remote attackers.

    Published: 19 Nov 2004
    2.1
    Low

    CVE-2004-0563

    Last Modified: 16 Apr 2026

    The tspc.conf configuration file in freenet6 before 0.9.6 and before 1.0 on Debian Linux has world readable permissions, which could allow local users to gain sensitive information, such as a username and password.

    Published: 19 Nov 2004
    7.5
    High

    CVE-2004-0601

    Last Modified: 16 Apr 2026

    distcc before 2.16, when running on 64-bit platforms, does not interpret IP-based access control rules correctly, which could allow remote attackers to bypass intended restrictions.

    Published: 19 Nov 2004
    5
    Medium

    CVE-2004-0749

    Last Modified: 16 Apr 2026

    The mod_authz_svn module in Subversion 1.0.7 and earlier does not properly restrict access to all metadata on unreadable paths, which could allow remote attackers to gain sensitive information via (1) svn log -v, (2) svn propget, or (3) svn blame, and other commands that follow renames.

    Published: 19 Nov 2004
    5
    Medium

    CVE-2004-0917

    Last Modified: 16 Apr 2026

    The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows remote attackers to gain sensitive information, such as server and OS version, and conduct unauthorized activities via an HTTP request to /diag.

    Published: 19 Nov 2004
    10
    Critical

    CVE-2004-1037

    Last Modified: 16 Apr 2026

    The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string.

    Published: 19 Nov 2004
    5
    Medium

    CVE-2004-0916

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in cabextract before 1.1 allows remote attackers to overwrite arbitrary files via a cabinet file containing .. (dot dot) sequences in a filename.

    Published: 19 Nov 2004
    7.5
    High

    CVE-2004-0936

    Last Modified: 16 Apr 2026

    RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Published: 19 Nov 2004
    10
    Critical

    CVE-2004-0980

    Last Modified: 16 Apr 2026

    Format string vulnerability in ez-ipupdate.c for ez-ipupdate 3.0.10 through 3.0.11b8, when running in daemon mode with certain service types in use, allows remote servers to execute arbitrary code.

    Published: 19 Nov 2004
    10
    Critical

    CVE-2004-0982

    Last Modified: 16 Apr 2026

    Buffer overflow in the getauthfromURL function in httpget.c in mpg123 pre0.59s and mpg123 0.59r could allow remote attackers or local users to execute arbitrary code via an mp3 file that contains a long string before the @ (at sign) in a URL.

    Published: 19 Nov 2004
    10
    Critical

    CVE-2004-0992

    Last Modified: 16 Apr 2026

    Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execute arbitrary code via format string specifiers in an invalid proxy answer.

    Published: 19 Nov 2004
    10
    Critical

    CVE-2004-1050

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME vulnerability" or the "HTML Elements Vulnerability."

    Published: 18 Nov 2004
    10
    Critical

    CVE-2004-1052

    Last Modified: 16 Apr 2026

    Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to execute arbitrary code via an IRC server response that contains many (1) ! (exclamation) or (2) @ (at sign) characters.

    Published: 18 Nov 2004
    7.5
    High

    CVE-2004-0892

    Last Modified: 16 Apr 2026

    Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 (which is included in Small Business Server 2000 and Small Business Server 2003 Premium Edition) allows remote attackers to spoof trusted Internet content on a specially crafted webpage via spoofed reverse DNS lookup results.

    Published: 16 Nov 2004
    10
    Critical

    CVE-2004-1034

    Last Modified: 16 Apr 2026

    Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long Content-Type header for a Real Audio Media (.ram) playlist file.

    Published: 16 Nov 2004
    7.2
    High

    CVE-2004-1038

    Last Modified: 16 Apr 2026

    A design error in the IEEE1394 specification allows attackers with physical access to a device to read and write to sensitive memory using a modified FireWire/IEEE 1394 client, thus bypassing intended restrictions that would normally require greater degrees of physical access to exploit. NOTE: this was reported in 2008 to affect Windows Vista, but some Linux-based operating systems have protection mechanisms against this attack.

    Published: 16 Nov 2004
    6.4
    Medium

    CVE-2004-1035

    Last Modified: 16 Apr 2026

    Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the IMAP_Line_Read function.

    Published: 16 Nov 2004
    2.6
    Low

    CVE-2004-1331

    Last Modified: 16 Apr 2026

    The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Security Warning" dialog and save arbitrary files with arbitrary extensions via the SaveAs command.

    Published: 16 Nov 2004
    10
    Critical

    CVE-2004-0882

    Last Modified: 16 Apr 2026

    Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a TRANSACT2_QFILEPATHINFO request with a small "maximum data bytes" value.

    Published: 15 Nov 2004
    6.2
    Medium

    CVE-2004-1068

    Last Modified: 16 Apr 2026

    A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.

    Published: 15 Nov 2004
    7.5
    High

    CVE-2004-1315

    Last Modified: 16 Apr 2026

    viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by double-encoding the highlight value so that special characters are inserted into the result, which is then processed by PHP exec, as exploited by the Santy.A worm.

    Published: 12 Nov 2004
    6.4
    Medium

    CVE-2004-0883

    Last Modified: 16 Apr 2026

    Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requested to the smb_proc_read function, (2) returning a data offset from outside the samba packet to the smb_proc_readX function, (3) sending a certain TRANS2 fragmented packet to the smb_receive_trans2 function, (4) sending a samba packet with a certain header size to the smb_proc_readX_data function, or (5) sending a certain packet based offset for the data in a packet to the smb_receive_trans2 function.

    Published: 12 Nov 2004
    6.4
    Medium

    CVE-2004-0949

    Last Modified: 16 Apr 2026

    The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.

    Published: 12 Nov 2004
    7.2
    High

    CVE-2004-1051

    Last Modified: 16 Apr 2026

    sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without using the program's full pathname.

    Published: 11 Nov 2004
    2.1
    Low

    CVE-2004-1074

    Last Modified: 16 Apr 2026

    The binfmt functionality in the Linux kernel, when "memory overcommit" is enabled, allows local users to cause a denial of service (kernel oops) via a malformed a.out binary.

    Published: 11 Nov 2004
    4.6
    Medium

    CVE-2005-4158

    Last Modified: 16 Apr 2026

    Sudo before 1.6.8 p12, when the Perl taint flag is off, does not clear the (1) PERLLIB, (2) PERL5LIB, and (3) PERL5OPT environment variables, which allows limited local users to cause a Perl script to include and execute arbitrary library files that have the same name as library files that are included by the script.

    Published: 11 Nov 2004
    7.2
    High

    CVE-2006-0151

    Last Modified: 16 Apr 2026

    sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment variable, which allows limited local users to gain privileges via a Python script, a variant of CVE-2005-4158.

    Published: 11 Nov 2004
    10
    Critical

    CVE-2004-0941

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.

    Published: 10 Nov 2004
    7.2
    High

    CVE-2004-1070

    Last Modified: 16 Apr 2026

    The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allow local users to modify sensitive memory in a setuid program and execute arbitrary code.

    Published: 10 Nov 2004
    7.2
    High

    CVE-2004-1071

    Last Modified: 16 Apr 2026

    The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly handle a failed call to the mmap function, which causes an incorrect mapped image and may allow local users to execute arbitrary code.

    Published: 10 Nov 2004
    7.2
    High

    CVE-2004-1072

    Last Modified: 16 Apr 2026

    The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows that allow local users to cause a denial of service (hang) and possibly execute arbitrary code.

    Published: 10 Nov 2004
    6.8
    Medium

    CVE-2004-1036

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail 1.4.3a and earlier, and 1.5.1-cvs before 23rd October 2004, allows remote attackers to execute arbitrary web script or HTML.

    Published: 10 Nov 2004
    2.1
    Low

    CVE-2004-1073

    Last Modified: 16 Apr 2026

    The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality.

    Published: 10 Nov 2004
    5
    Medium

    CVE-2004-1027

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the -x (extract) command line option in unarj allows remote attackers to overwrite arbitrary files via an arj archive with filenames that contain .. (dot dot) sequences.

    Published: 9 Nov 2004
    10
    Critical

    CVE-2004-0947

    Last Modified: 16 Apr 2026

    Buffer overflow in unarj before 2.63a-r2 allows remote attackers to execute arbitrary code via an arj archive that contains long filenames.

    Published: 9 Nov 2004
    5
    Medium

    CVE-2004-0930

    Last Modified: 16 Apr 2026

    The ms_fnmatch function in Samba 3.0.4 and 3.0.7 and possibly other versions allows remote authenticated users to cause a denial of service (CPU consumption) via a SAMBA request that contains multiple * (wildcard) characters.

    Published: 8 Nov 2004
    5
    Medium

    CVE-2004-0983

    Last Modified: 16 Apr 2026

    The CGI module in Ruby 1.6 before 1.6.8, and 1.8 before 1.8.2, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a certain HTTP request.

    Published: 8 Nov 2004
    7.5
    High

    CVE-2004-1002

    Last Modified: 16 Apr 2026

    Integer underflow in pppd in cbcp.c for ppp 2.4.1 allows remote attackers to cause a denial of service (daemon crash) via a CBCP packet with an invalid length value that causes pppd to access an incorrect memory location.

    Published: 4 Nov 2004
    5
    Medium

    CVE-2004-1003

    Last Modified: 16 Apr 2026

    Trend ScanMail allows remote attackers to obtain potentially sensitive information or disable the anti-virus capability via the smency.nsf file.

    Published: 4 Nov 2004
    Unknown

    CVE-2004-0955

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0599. Reason: This candidate is a reservation duplicate of CVE-2004-0599 (the first item listed in that candidate). Notes: All CVE users should reference CVE-2004-0599 instead of this candidate. All references and descriptions have been removed from this candidate to prevent accidental usage

    Published: 4 Nov 2004
    4.6
    Medium

    CVE-2004-1001

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the passwd_check function in Shadow 4.0.4.1, and possibly other versions before 4.0.5, allows local users to conduct unauthorized activities when an error from a pam_chauthtok function call is not properly handled.

    Published: 4 Nov 2004
    5
    Medium

    CVE-2004-1007

    Last Modified: 16 Apr 2026

    The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (application crash) via mail headers that cause a line feed (LF) to be replaced by a null byte that is written to an incorrect memory address.

    Published: 4 Nov 2004
    10
    Critical

    CVE-2004-1010

    Last Modified: 16 Apr 2026

    Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote attackers to execute arbitrary code via a ZIP file containing a long pathname.

    Published: 3 Nov 2004
    10
    Critical

    CVE-2004-1006

    Last Modified: 16 Apr 2026

    Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary code via certain DNS messages, a different vulnerability than CVE-2002-0702.

    Published: 2 Nov 2004
    5
    Medium

    CVE-2004-1121

    Last Modified: 16 Apr 2026

    Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags.

    Published: 1 Nov 2004
    5
    Medium

    CVE-2004-0942

    Last Modified: 16 Apr 2026

    Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters.

    Published: 1 Nov 2004