CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2004-0691

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code.

    Published: 18 Aug 2004
    4.6
    Medium

    CVE-2004-0457

    Last Modified: 16 Apr 2026

    The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows local users to overwrite arbitrary files via a symlink attack on temporary files.

    Published: 18 Aug 2004
    5
    Medium

    CVE-2004-0832

    Last Modified: 16 Apr 2026

    The (1) ntlm_fetch_string and (2) ntlm_get_string functions in Squid 2.5.6 and earlier, with NTLM authentication enabled, allow remote attackers to cause a denial of service (application crash) via an NTLMSSP packet that causes a negative value to be passed to memcpy.

    Published: 18 Aug 2004
    5
    Medium

    CVE-2004-1721

    Last Modified: 16 Apr 2026

    The (1) function.php or (2) function.view.php scripts in Merak Mail Server 5.2.7 allow remote attackers to read arbitrary PHP files via a direct HTTP request to port 32000.

    Published: 17 Aug 2004
    5
    Medium

    CVE-2004-1720

    Last Modified: 16 Apr 2026

    The (1) address.html and possibly (2) calendar.html pages in Merak Mail Server 5.2.7 allow remote attackers to gain sensitive information via an invalid HTTP request, which reveals the installation path. NOTE: it is unclear whether the calendar.html is an exposure, since the path is leaked in web logs that may only be available to the administrators, who would have access to the path through legitimate means.

    Published: 17 Aug 2004
    4.3
    Medium

    CVE-2004-1719

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Merak Webmail Server 5.2.7 allow remote attackers to inject arbitrary web script or HTML via the (1) category, (2) cserver, (3) ext, (4) global, (5) showgroups, (6) or showlite parameters to address.html, or the (7) spage or (8) autoresponder parameters to settings.html, the (9) folder parameter to readmail.html, or the (10) attachmentpage_text_error parameter to attachment.html, (11) folder, (12) ct, or (13) cv parameters to calendar.html, (14) an <img> tag, or (15) the subject of an e-mail message.

    Published: 17 Aug 2004
    7.5
    High

    CVE-2004-1722

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in calendar.html in Merak Mail Server 5.2.7 allows remote attackers to execute arbitrary SQL statements via the schedule parameter.

    Published: 17 Aug 2004
    2.1
    Low

    CVE-2004-1718

    Last Modified: 16 Apr 2026

    The ZwOpenSection function in Integrity Protection Driver (IPD) 1.4 and earlier allows local users to cause a denial of service (crash) via an invalid pointer in the "oa" argument.

    Published: 17 Aug 2004
    2.1
    Low

    CVE-2004-1453

    Last Modified: 16 Apr 2026

    GNU glibc 2.3.4 before 2.3.4.20040619, 2.3.3 before 2.3.3.20040420, and 2.3.2 before 2.3.2-r10 does not restrict the use of LD_DEBUG for a setuid program, which allows local users to gain sensitive information, such as the list of symbols used by the program.

    Published: 17 Aug 2004
    7.5
    High

    CVE-2004-1737

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in auth_login.php in Cacti 0.8.5a allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password parameters.

    Published: 16 Aug 2004
    7.5
    High

    CVE-2004-1717

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in the psscan function in ps.c for gv (ghostview) allow remote attackers to execute arbitrary code via a Postscript file with a long (1) BoundingBox, (2) comment, (3) Orientation, (4) PageOrder, or (5) Pages value.

    Published: 16 Aug 2004
    6.8
    Medium

    CVE-2004-1716

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in PForum before 1.26 allows remote attackers to inject arbitrary web script or HTML via the (1) IRC Server or (2) AIM ID fields in the user profile.

    Published: 16 Aug 2004
    10
    Critical

    CVE-2004-1682

    Last Modified: 16 Apr 2026

    Format string vulnerability in QNX 6.1 FTP client allows remote authenticated users to gain group bin privileges via format string specifiers in the QUOTE command.

    Published: 15 Aug 2004
    7.5
    High

    CVE-2004-0779

    Last Modified: 16 Apr 2026

    The (1) Mozilla 1.6, (2) Firebird 0.7 and (3) Firefox 0.8 web browsers do not properly verify that cached passwords for SSL encrypted sites are only sent via SSL encrypted sessions to the site, which allows a remote attacker to cause a cached password to be sent in cleartext to a spoofed site.

    Published: 14 Aug 2004
    4.3
    Medium

    CVE-2004-0203

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Outlook Web Access for Exchange Server 5.5 Service Pack 4 allows remote attackers to insert arbitrary script and spoof content in HTML email or web caches via an HTML redirect query.

    Published: 12 Aug 2004
    10
    Critical

    CVE-2004-0636

    Last Modified: 16 Apr 2026

    Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.3595, allows remote attackers to execute arbitrary code via a long Away message.

    Published: 12 Aug 2004
    5
    Medium

    CVE-2004-0743

    Last Modified: 16 Apr 2026

    Safari in Mac OS X before 10.3.5, after sending form data using the POST method, may re-send the data to a GET method URL if that URL is redirected after the POST data and the user uses the forward or backward buttons, which may cause an information leak.

    Published: 12 Aug 2004
    5
    Medium

    CVE-2004-0744

    Last Modified: 16 Apr 2026

    The TCP/IP Networking component in Mac OS X before 10.3.5 allows remote attackers to cause a denial of service (memory and resource consumption) via a "Rose Attack" that involves sending a subset of small IP fragments that do not form a complete, larger packet.

    Published: 12 Aug 2004
    10
    Critical

    CVE-2004-0631

    Last Modified: 16 Apr 2026

    Buffer overflow in the uudecoding feature for Adobe Acrobat Reader 5.0.5 and 5.0.6 for Unix and Linux, and possibly other versions including those before 5.0.9, allows remote attackers to execute arbitrary code via a long filename for the PDF file that is provided to the uudecode command.

    Published: 12 Aug 2004
    6.4
    Medium

    CVE-2004-0792

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.

    Published: 12 Aug 2004
    7.5
    High

    CVE-2004-0785

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in Gaim before 0.82 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) Rich Text Format (RTF) messages, (2) a long hostname for the local system as obtained from DNS, or (3) a long URL that is not properly handled by the URL decoder.

    Published: 12 Aug 2004
    10
    Critical

    CVE-2004-0630

    Last Modified: 16 Apr 2026

    The uudecoding feature in Adobe Acrobat Reader 5.0.5 and 5.0.6 for Unix and Linux, and possibly other versions including those before 5.0.9, allows remote attackers to execute arbitrary code via shell metacharacters ("`" or backtick) in the filename of the PDF file that is provided to the uudecode command.

    Published: 12 Aug 2004
    4.3
    Medium

    CVE-2005-0784

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Phorum before 5.0.15 allow remote attackers to inject arbitrary web script or HTML via (1) the subject line to follow.php or (2) the subject line in the user's personal control panel.

    Published: 12 Aug 2004
    7.1
    High

    CVE-2004-1714

    Last Modified: 16 Apr 2026

    BlackICE PC Protection and Server Protection installs (1) firewall.ini, (2) blackice.ini, (3) sigs.ini and (4) protect.ini with Everyone Full Control permissions, which allows local users to cause a denial of service (crash) or modify configuration, as demonstrated by modifying firewall.ini to contain a large firewall rule.

    Published: 11 Aug 2004
    5
    Medium

    CVE-2004-1715

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 allows remote attackers or local users to read arbitrary files via "..\\", "..\", and similar dot dot sequences in the URL.

    Published: 11 Aug 2004
    6.8
    Medium

    CVE-2004-0694

    Last Modified: 11 Apr 2025

    Buffer overflow in LHA 1.14 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to "command line processing," a different vulnerability than CVE-2004-0771. NOTE: this issue may be REJECTED if there are not any cases in which LHA is setuid or is otherwise used across security boundaries.

    Published: 11 Aug 2004
    7.1
    High

    CVE-2004-0689

    Last Modified: 16 Apr 2026

    KDE before 3.3.0 does not properly handle when certain symbolic links point to "stale" locations, which could allow local users to create or truncate arbitrary files.

    Published: 11 Aug 2004
    10
    Critical

    CVE-2004-0745

    Last Modified: 16 Apr 2026

    LHA 1.14 and earlier allows attackers to execute arbitrary commands via a directory with shell metacharacters in its name.

    Published: 11 Aug 2004
    5
    Medium

    CVE-2004-1347

    Last Modified: 16 Apr 2026

    X Display Manager (XDM) on Solaris 8 allows remote attackers to cause a denial of service (XDM crash) via an invalid X Display Manager Control Protocol (XDMCP) request.

    Published: 10 Aug 2004
    2.1
    Low

    CVE-2004-1713

    Last Modified: 16 Apr 2026

    Unknown vulnerability in HP Process Resource Manager (PRM) C.02.01[.01] and earlier, as used by HP-UX Workload Manager (WLM), allows local users to corrupt data files.

    Published: 10 Aug 2004
    5
    Medium

    CVE-2004-1702

    Last Modified: 16 Apr 2026

    The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 does not properly check the return value of the ReceiveTransaction function, which leads to a failed malloc call and triggers to a null dereference, which allows remote attackers to cause a denial of service (crash).

    Published: 9 Aug 2004
    10
    Critical

    CVE-2004-1701

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote attackers to execute arbitrary code via a long SAUTH command during RSA authentication.

    Published: 9 Aug 2004
    4.3
    Medium

    CVE-2004-1712

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in TypePad allows remote attackers to inject arbitrary Javascript via the name parameter.

    Published: 6 Aug 2004
    4.3
    Medium

    CVE-2004-1711

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in post.php in Moodle before 1.3 allows remote attackers to inject arbitrary web script or HTML via the reply parameter.

    Published: 6 Aug 2004
    7.5
    High

    CVE-2004-1710

    Last Modified: 16 Apr 2026

    page.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the url parameter.

    Published: 6 Aug 2004
    7.5
    High

    CVE-2004-0641

    Last Modified: 16 Apr 2026

    Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.

    Published: 5 Aug 2004
    7.5
    High

    CVE-2004-0500

    Last Modified: 16 Apr 2026

    Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.

    Published: 5 Aug 2004
    5
    Medium

    CVE-2004-0796

    Last Modified: 16 Apr 2026

    SpamAssassin 2.5x, and 2.6x before 2.64, allows remote attackers to cause a denial of service via certain malformed messages.

    Published: 5 Aug 2004
    4.4
    Medium

    CVE-2004-1367

    Last Modified: 16 Apr 2026

    Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP or (2) SYSMAN user, generates an error that logs the password in the world-readable postDBCreation.log file, which could allow local users to obtain that password and use it against SYS or SYSTEM accounts, which may have been installed with the same password.

    Published: 4 Aug 2004
    4.6
    Medium

    CVE-2004-1366

    Last Modified: 16 Apr 2026

    Oracle 10g Database Server stores the password for the SYSMAN account in cleartext in the world-readable emoms.properties file, which could allow local users to gain DBA privileges.

    Published: 4 Aug 2004
    4.6
    Medium

    CVE-2004-1365

    Last Modified: 16 Apr 2026

    Extproc in Oracle 9i and 10g does not require authentication to load a library or execute a function, which allows local users to execute arbitrary commands as the Oracle user.

    Published: 4 Aug 2004
    7.8
    High

    CVE-2004-1368

    Last Modified: 16 Apr 2026

    ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname in the file parameter to the load.uix script.

    Published: 4 Aug 2004
    7.5
    High

    CVE-2004-1362

    Last Modified: 16 Apr 2026

    The PL/SQL module for the Oracle HTTP Server in Oracle Application Server 10g, when using the WE8ISO8859P1 character set, does not perform character conversions properly, which allows remote attackers to bypass access restrictions for certain procedures via an encoded URL with "%FF" encoded sequences that are improperly converted to "Y" characters.

    Published: 4 Aug 2004
    9.8
    Critical

    CVE-2004-1363

    Last Modified: 16 Apr 2026

    Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.

    Published: 4 Aug 2004
    5
    Medium

    CVE-2004-1369

    Last Modified: 16 Apr 2026

    The TNS Listener in Oracle 10g allows remote attackers to cause a denial of service (listener crash) via a malformed service_register_NSGR request containing a value that is used as an invalid offset for a pointer that references incorrect memory.

    Published: 4 Aug 2004
    7.5
    High

    CVE-2004-1370

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in PL/SQL procedures that run with definer rights in Oracle 9i and 10g allow remote attackers to execute arbitrary SQL commands and gain privileges via (1) DBMS_EXPORT_EXTENSION, (2) WK_ACL.GET_ACL, (3) WK_ACL.STORE_ACL, (4) WK_ADM.COMPLETE_ACL_SNAPSHOT, (5) WK_ACL.DELETE_ACLS_WITH_STATEMENT, or (6) DRILOAD.VALIDATE_STMT.

    Published: 4 Aug 2004
    5
    Medium

    CVE-2004-1679

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in TwinFTP 1.0.3 R2 allows remote attackers to create arbitrary files via a .../ (triple dot) in the (1) CWD, (2) STOR, or (3) RETR commands.

    Published: 4 Aug 2004
    2.1
    Low

    CVE-2004-1709

    Last Modified: 16 Apr 2026

    Datakey Rainbow iKey2032 USB token, when using the CIP client package, does not encrypt communications between the token and the driver, which could allow local users to obtain the PINs of other users.

    Published: 4 Aug 2004
    8.5
    High

    CVE-2004-1364

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in extproc in Oracle 9i and 10g allows remote attackers to access arbitrary libraries outside of the $ORACLE_HOME\bin directory.

    Published: 4 Aug 2004
    9
    Critical

    CVE-2004-1371

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in Oracle 9i and 10g allows remote attackers to execute arbitrary code via a long token in the text of a wrapped procedure.

    Published: 4 Aug 2004