CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2004-0138

    Last Modified: 16 Apr 2026

    The ELF loader in Linux kernel 2.4 before 2.4.25 allows local users to cause a denial of service (crash) via a crafted ELF file with an interpreter with an invalid arch (architecture), which triggers a BUG() when an invalid VMA is unmapped.

    Published: 15 Oct 2004
    7.5
    High

    CVE-2004-1605

    Last Modified: 16 Apr 2026

    SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertype=Administrator.

    Published: 14 Oct 2004
    4.3
    Medium

    CVE-2004-1700

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in SettingsBase.php in Pinnacle ShowCenter 1.51 build 121 allows remote attackers to inject arbitrary HTML or web script via the Skin parameter, which is echoed in an error message.

    Published: 14 Oct 2004
    4.3
    Medium

    CVE-2004-1594

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in FuseTalk 4.0 allows remote attackers to execute arbitrary web script via an img src tag.

    Published: 13 Oct 2004
    7.5
    High

    CVE-2004-1595

    Last Modified: 16 Apr 2026

    Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field.

    Published: 13 Oct 2004
    7.5
    High

    CVE-2004-1596

    Last Modified: 16 Apr 2026

    The 3COM Wireless router 3CRADSL72 running Boot Code 1.3d allows remote attackers to gain sensitive information such as passwords and router settings via a direct HTTP request to app_sta.stm.

    Published: 13 Oct 2004
    5
    Medium

    CVE-2004-1597

    Last Modified: 16 Apr 2026

    RIM Blackberry 7230 running RIM Blackberry OS 3.7 SP1 allows remote attackers to cause a denial of service (device reboot and possibly data corruption) via a calendar message with a long Location field, which triggers a watchdog while the message is being stored.

    Published: 13 Oct 2004
    7.5
    High

    CVE-2004-0803

    Last Modified: 16 Apr 2026

    Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.

    Published: 13 Oct 2004
    5
    Medium

    CVE-2004-0886

    Last Modified: 16 Apr 2026

    Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls.

    Published: 13 Oct 2004
    5
    Medium

    CVE-2004-1671

    Last Modified: 16 Apr 2026

    Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to gain sensitive information via a direct request to (1) accountsettings_add.html or (2) topmenu.html.

    Published: 12 Oct 2004
    7.5
    High

    CVE-2004-1672

    Last Modified: 16 Apr 2026

    attachment.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to view other users' attachments by specifying the username and message ID in an HTTP request.

    Published: 12 Oct 2004
    7.5
    High

    CVE-2004-1674

    Last Modified: 16 Apr 2026

    viewaction.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to (1) delete arbitrary files via the originalfolder parameter or (2) move arbitrary files via the messageid parameter.

    Published: 12 Oct 2004
    7.5
    High

    CVE-2004-1673

    Last Modified: 16 Apr 2026

    accountsettings_add.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allow remote attackers to create text files with arbitrary content via the accountid parameter.

    Published: 12 Oct 2004
    5
    Medium

    CVE-2004-1598

    Last Modified: 16 Apr 2026

    Adobe Acrobat and Acrobat Reader 6.0 allow remote attackers to read arbitrary files via a PDF file that contains an embedded Shockwave (swf) file that references files outside of the temporary directory.

    Published: 12 Oct 2004
    5
    Medium

    CVE-2004-0918

    Last Modified: 16 Apr 2026

    The asn_parse_header function (asn1.c) in the SNMP module for Squid Web Proxy Cache before 2.4.STABLE7 allows remote attackers to cause a denial of service (server restart) via certain SNMP packets with negative length fields that trigger a memory allocation error.

    Published: 11 Oct 2004
    7.5
    High

    CVE-2005-0373

    Last Modified: 16 Apr 2026

    Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.

    Published: 7 Oct 2004
    7.2
    High

    CVE-2004-0884

    Last Modified: 16 Apr 2026

    The (1) libsasl and (2) libsasl2 libraries in Cyrus-SASL 2.1.18 and earlier trust the SASL_PATH environment variable to find all available SASL plug-ins, which allows local users to execute arbitrary code by modifying the SASL_PATH to point to malicious programs.

    Published: 7 Oct 2004
    9.8
    Critical

    CVE-2004-0847

    Last Modified: 16 Apr 2026

    The Microsoft .NET forms authentication capability for ASP.NET allows remote attackers to bypass authentication for .aspx files in restricted directories via a request containing a (1) "\" (backslash) or (2) "%5C" (encoded backslash), aka "Path Validation Vulnerability."

    Published: 6 Oct 2004
    5
    Medium

    CVE-2004-0920

    Last Modified: 16 Apr 2026

    Symantec Norton AntiVirus 2004, and earlier versions, allows a virus or other malicious code to avoid detection or cause a denial of service (application crash) using a filename containing an MS-DOS device name.

    Published: 6 Oct 2004
    7.5
    High

    CVE-2005-0188

    Last Modified: 16 Apr 2026

    Format string vulnerability in the SetBaseURL function in AtHoc toolbar allows remote attackers to execute arbitrary code via format string specifiers in an invalid URL that is recorded in the debug log.

    Published: 6 Oct 2004
    2.6
    Low

    CVE-2005-0192

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the parsing of Skin file names in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in an RJS filename.

    Published: 6 Oct 2004
    10
    Critical

    CVE-2004-0981

    Last Modified: 16 Apr 2026

    Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to execute arbitrary code via a certain image file.

    Published: 6 Oct 2004
    5
    Medium

    CVE-2004-0928

    Last Modified: 16 Apr 2026

    The Microsoft IIS Connector in JRun 4.0 and Macromedia ColdFusion MX 6.0, 6.1, and 6.1 J2EE allows remote attackers to bypass authentication and view source files, such as .asp, .pl, and .php files, via an HTTP request that ends in ";.cfm".

    Published: 5 Oct 2004
    7.5
    High

    CVE-2004-0885

    Last Modified: 16 Apr 2026

    The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.

    Published: 5 Oct 2004
    2.1
    Low

    CVE-2004-1349

    Last Modified: 16 Apr 2026

    gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are hard linked to the target files, which allows local users to view or modify these files.

    Published: 4 Oct 2004
    7.5
    High

    CVE-2004-1773

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in sharutils 4.2.1 and earlier may allow attackers to execute arbitrary code via (1) long output from wc to shar, or (2) unknown vectors in unshar.

    Published: 1 Oct 2004
    5
    Medium

    CVE-2004-1604

    Last Modified: 16 Apr 2026

    cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private directory, which is created when Front Page extensions are enabled.

    Published: 30 Sept 2004
    7.5
    High

    CVE-2004-0815

    Last Modified: 16 Apr 2026

    The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0971

    Last Modified: 16 Apr 2026

    The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0975

    Last Modified: 16 Apr 2026

    The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0923

    Last Modified: 16 Apr 2026

    CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local users to obtain user names and passwords.

    Published: 30 Sept 2004
    7.2
    High

    CVE-2004-0967

    Last Modified: 16 Apr 2026

    The (1) pj-gs.sh, (2) ps2epsi, (3) pv.sh, and (4) sysvlp.sh scripts in the ESP Ghostscript (espgs) package in Trustix Secure Linux 1.5 through 2.1, and other operating systems, allow local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0968

    Last Modified: 16 Apr 2026

    The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0972

    Last Modified: 16 Apr 2026

    The lvmcreate_initrd script in the lvm package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0976

    Last Modified: 16 Apr 2026

    Multiple scripts in the perl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.1
    Low

    CVE-2004-0977

    Last Modified: 16 Apr 2026

    The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files.

    Published: 30 Sept 2004
    2.6
    Low

    CVE-2005-0190

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to delete arbitrary files via a Real Metadata Packages (RMP) file with a FILENAME tag containing .. (dot dot) sequences in a filename that ends with a ? (question mark) and an allowed file extension (e.g. .mp3), which bypasses the check for the file extension.

    Published: 29 Sept 2004
    7.5
    High

    CVE-2004-0552

    Last Modified: 16 Apr 2026

    Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed.

    Published: 28 Sept 2004
    5
    Medium

    CVE-2004-0911

    Last Modified: 16 Apr 2026

    telnetd for netkit 0.17 and earlier, and possibly other versions, on Debian GNU/Linux allows remote attackers to cause a denial of service (free of an invalid pointer), a different vulnerability than CVE-2001-0554.

    Published: 28 Sept 2004
    2.1
    Low

    CVE-2004-0828

    Last Modified: 16 Apr 2026

    The ctstrtcasd program in RSCT 2.3.0.0 and earlier on IBM AIX 5.2 and 5.3 does not properly drop privileges before executing the -f option, which allows local users to modify or create arbitrary files.

    Published: 28 Sept 2004
    Unknown

    CVE-2004-0910

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0815. Reason: This candidate is a reservation duplicate of CVE-2004-0815. Notes: All CVE users should reference CVE-2004-0815 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 28 Sept 2004
    7.5
    High

    CVE-2005-0189

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to execute arbitrary code via a long ShowPreferences argument.

    Published: 28 Sept 2004
    5.1
    Medium

    CVE-2005-0191

    Last Modified: 16 Apr 2026

    Off-by-one buffer overflow in the processing of tags in Real Metadata Package (RMP) files in RealPlayer 10.5 (6.0.12.1040) and earlier could allow remote attackers to execute arbitrary code via a long tag.

    Published: 28 Sept 2004
    5
    Medium

    CVE-2004-1698

    Last Modified: 16 Apr 2026

    The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of service (application crash) via invalid characters in a message, which causes several alert dialogs to be displayed and leads to a crash.

    Published: 24 Sept 2004
    5
    Medium

    CVE-2004-0825

    Last Modified: 16 Apr 2026

    QuickTime Streaming Server in Mac OS X Server 10.2.8, 10.3.4, and 10.3.5 allows remote attackers to cause a denial of service (application deadlock) via a certain sequence of operations.

    Published: 24 Sept 2004
    7.5
    High

    CVE-2004-0051

    Last Modified: 16 Apr 2026

    Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard but frequently supported Content-Transfer-Encoding values such as (1) uuencode, (2) mac-binhex40, and (3) yenc, which may be interpreted differently by mail clients.

    Published: 24 Sept 2004
    7.5
    High

    CVE-2004-0052

    Last Modified: 16 Apr 2026

    Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard separator characters, or use standard separators incorrectly, within MIME headers, fields, parameters, or values, which may be interpreted differently by mail clients.

    Published: 24 Sept 2004
    7.5
    High

    CVE-2004-0161

    Last Modified: 16 Apr 2026

    Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use RFC2231 encoding, which may be interpreted differently by mail clients.

    Published: 24 Sept 2004
    2.1
    Low

    CVE-2004-0559

    Last Modified: 16 Apr 2026

    The maketemp.pl script in Usermin 1.070 and 1.080 allows local users to overwrite arbitrary files at install time via a symlink attack on the /tmp/.usermin directory.

    Published: 24 Sept 2004
    5.1
    Medium

    CVE-2004-0802

    Last Modified: 16 Apr 2026

    Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817.

    Published: 24 Sept 2004