CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2004-0736

    Last Modified: 16 Apr 2026

    The search module in Php-Nuke allows remote attackers to gain sensitive information via the (1) "**" or (2) "+" search patterns, which reveals the path in an error message.

    Published: 23 Jul 2004
    5
    Medium

    CVE-2004-1749

    Last Modified: 16 Apr 2026

    Attack Mitigator IPS 5500 3.11.008, and possibly other versions, when configured in a one-armed routing configuration, allows remote attackers to cause a denial of service (CPU consumption) via a large number of HTTP requests.

    Published: 22 Jul 2004
    5
    Medium

    CVE-2004-0761

    Last Modified: 16 Apr 2026

    Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote attackers to use certain redirect sequences to spoof the security lock icon that makes a web page appear to be encrypted.

    Published: 22 Jul 2004
    5
    Medium

    CVE-2004-0686

    Last Modified: 16 Apr 2026

    Buffer overflow in Samba 2.2.x to 2.2.9, and 3.0.0 to 3.0.4, when the "mangling method = hash" option is enabled in smb.conf, has unknown impact and attack vectors.

    Published: 22 Jul 2004
    2.1
    Low

    CVE-2004-0755

    Last Modified: 16 Apr 2026

    The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permissions, which can allow local users to steal session information and hijack sessions.

    Published: 22 Jul 2004
    10
    Critical

    CVE-2004-0757

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code.

    Published: 22 Jul 2004
    6.4
    Medium

    CVE-2004-0759

    Last Modified: 16 Apr 2026

    Mozilla before 1.7 allows remote web servers to read arbitrary files via Javascript that sets the value of an <input type="file"> tag.

    Published: 22 Jul 2004
    10
    Critical

    CVE-2004-0600

    Last Modified: 16 Apr 2026

    Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an invalid base-64 character during HTTP basic authentication.

    Published: 22 Jul 2004
    10
    Critical

    CVE-2004-0722

    Last Modified: 16 Apr 2026

    Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code.

    Published: 22 Jul 2004
    7.5
    High

    CVE-2004-0566

    Last Modified: 16 Apr 2026

    Integer overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.

    Published: 21 Jul 2004
    4.6
    Medium

    CVE-2004-0701

    Last Modified: 16 Apr 2026

    Sun Ray Server Software (SRSS) 1.3 and 2.0 for Solaris 2.6, 7 and 8 does not properly detect a smartcard removal when the card is quickly removed, reinserted, and removed again, which could cause a user session to stay logged in and allow local users to gain unauthorized access.

    Published: 21 Jul 2004
    7.5
    High

    CVE-2004-0711

    Last Modified: 16 Apr 2026

    The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected.

    Published: 21 Jul 2004
    7.8
    High

    CVE-2003-1048

    Last Modified: 16 Apr 2026

    Double free vulnerability in mshtml.dll for certain versions of Internet Explorer 6.x allows remote attackers to cause a denial of service (application crash) via a malformed GIF image.

    Published: 21 Jul 2004
    5
    Medium

    CVE-2004-0702

    Last Modified: 16 Apr 2026

    DBI in Bugzilla 2.17.1 through 2.17.7 displays the database password in an error message when the SQL server is not running, which could allow remote attackers to gain sensitive information.

    Published: 21 Jul 2004
    6.8
    Medium

    CVE-2004-0705

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in (1) editcomponents.cgi, (2) editgroups.cgi, (3) editmilestones.cgi, (4) editproducts.cgi, (5) editusers.cgi, and (6) editversions.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allow remote attackers to execute arbitrary JavaScript as other users via a URL parameter.

    Published: 21 Jul 2004
    7.5
    High

    CVE-2004-0709

    Last Modified: 16 Apr 2026

    HP OpenView Select Access 5.0 through 6.0 does not correctly decode UTF-8 encoded unicode characters in a URL, which could allow remote attackers to bypass access restrictions.

    Published: 21 Jul 2004
    4.6
    Medium

    CVE-2004-0712

    Last Modified: 16 Apr 2026

    The configuration tools (1) config.sh in Unix or (2) config.cmd in Windows for BEA WebLogic Server 8.1 through SP2 create a log file that contains the administrative username and password in cleartext, which could allow local users to gain privileges.

    Published: 21 Jul 2004
    5.1
    Medium

    CVE-2004-0715

    Last Modified: 16 Apr 2026

    The WebLogic Authentication provider for BEA WebLogic Server and WebLogic Express 8.1 through SP2 and 7.0 through SP4 does not properly clear member relationships when a group is deleted, which can cause a new group with the same name to have the members of the old group, which allows group members to gain privileges.

    Published: 21 Jul 2004
    7.5
    High

    CVE-2004-0708

    Last Modified: 16 Apr 2026

    MoinMoin 1.2.1 and earlier allows remote attackers to gain privileges by creating a user with the same name as an existing group that has higher privileges.

    Published: 21 Jul 2004
    7.5
    High

    CVE-2004-0703

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the administrative controls in Bugzilla 2.17.1 through 2.17.7 allows users with "grant membership" privileges to grant memberships to groups that the user does not control.

    Published: 21 Jul 2004
    5
    Medium

    CVE-2004-0704

    Last Modified: 16 Apr 2026

    Unknown vulnerability in (1) duplicates.cgi and (2) buglist.cgi in Bugzilla 2.16.x before 2.16.6, 2.18 before 2.18rc1, when configured to hide products, allows remote attackers to view hidden products.

    Published: 21 Jul 2004
    2.1
    Low

    CVE-2004-0706

    Last Modified: 16 Apr 2026

    Bugzilla 2.17.5 through 2.17.7 embeds the password in an image URL, which could allow local users to view the password in the web server log files.

    Published: 21 Jul 2004
    7.5
    High

    CVE-2004-0707

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote attackers with privileges to grant membership to any group to execute arbitrary SQL.

    Published: 21 Jul 2004
    6.4
    Medium

    CVE-2004-0713

    Last Modified: 16 Apr 2026

    The remove method in a stateful Enterprise JavaBean (EJB) in BEA WebLogic Server and WebLogic Express version 8.1 through SP2, 7.0 through SP4, and 6.1 through SP6, does not properly check EJB permissions before unexporting a bean, which allows remote authenticated users to remove EJB objects from remote views before the security exception is thrown.

    Published: 21 Jul 2004
    5
    Medium

    CVE-2004-0714

    Last Modified: 16 Apr 2026

    Cisco Internetwork Operating System (IOS) 12.0S through 12.3T attempts to process SNMP solicited operations on improper ports (UDP 162 and a randomly chosen UDP port), which allows remote attackers to cause a denial of service (device reload and memory corruption).

    Published: 21 Jul 2004
    5
    Medium

    CVE-2004-0710

    Last Modified: 16 Apr 2026

    IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet.

    Published: 21 Jul 2004
    4.3
    Medium

    CVE-2004-2055

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.php for PhpBB 2.0.4 and 2.0.9 allows remote attackers to inject arbitrary HTMl or web script via the search_author parameter.

    Published: 19 Jul 2004
    7.5
    High

    CVE-2004-0632

    Last Modified: 16 Apr 2026

    Adobe Reader 6.0 does not properly handle null characters when splitting a filename path into components, which allows remote attackers to execute arbitrary code via a file with a long extension that is not normally handled by Reader, triggering a buffer overflow.

    Published: 16 Jul 2004
    7.5
    High

    CVE-2004-0695

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbitrary code via a long FTP command.

    Published: 16 Jul 2004
    5
    Medium

    CVE-2004-0696

    Last Modified: 16 Apr 2026

    The ShellExample.cgi script in 4D WebSTAR 5.3.2 and earlier allows remote attackers to list arbitrary directories via a URL with the desired path and a "*" (asterisk) character.

    Published: 16 Jul 2004
    5
    Medium

    CVE-2004-0697

    Last Modified: 16 Apr 2026

    Unknown vulnerability in 4D WebSTAR 5.3.2 and earlier allows remote attackers to read the php.ini configuration file and possibly obtain sensitive information.

    Published: 16 Jul 2004
    3.6
    Low

    CVE-2004-0698

    Last Modified: 16 Apr 2026

    4D WebSTAR 5.3.2 and earlier allows local users to read and modify arbitrary files via a symlink attack.

    Published: 16 Jul 2004
    7.5
    High

    CVE-2004-0700

    Last Modified: 16 Apr 2026

    Format string vulnerability in the mod_proxy hook functions function in ssl_engine_log.c in mod_ssl before 2.8.19 for Apache before 1.3.31 may allow remote attackers to execute arbitrary messages via format string specifiers in certain log messages for HTTPS that are handled by the ssl_log function.

    Published: 16 Jul 2004
    7.8
    High

    CVE-2004-0210

    Last Modified: 16 Apr 2026

    The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.

    Published: 14 Jul 2004
    10
    Critical

    CVE-2004-0201

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041.

    Published: 14 Jul 2004
    10
    Critical

    CVE-2004-0212

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the Task Scheduler for Windows 2000 and XP, and Internet Explorer 6 on Windows NT 4.0, allows local or remote attackers to execute arbitrary code via a .job file containing long parameters, as demonstrated using Internet Explorer and accessing a .job file on an anonymous share.

    Published: 14 Jul 2004
    7.8
    High

    CVE-2004-0213

    Last Modified: 16 Apr 2026

    Utility Manager in Windows 2000 launches winhlp32.exe while Utility Manager is running with raised privileges, which allows local users to gain system privileges via a "Shatter" style attack that sends a Windows message to cause Utility Manager to launch winhlp32 by directly accessing the context sensitive help and bypassing the GUI, then sending another message to winhlp32 in order to open a user-selected file, a different vulnerability than CVE-2003-0908.

    Published: 14 Jul 2004
    5
    Medium

    CVE-2004-0215

    Last Modified: 16 Apr 2026

    Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.

    Published: 14 Jul 2004
    2.1
    Low

    CVE-2004-0596

    Last Modified: 16 Apr 2026

    The Equalizer Load-balancer for serial network interfaces (eql.c) in Linux kernel 2.6.x up to 2.6.7 allows local users to cause a denial of service via a non-existent device name that triggers a null dereference.

    Published: 14 Jul 2004
    7.2
    High

    CVE-2004-0205

    Last Modified: 16 Apr 2026

    Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.

    Published: 14 Jul 2004
    6.8
    Medium

    CVE-2004-0595

    Last Modified: 16 Apr 2026

    The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restricting input to allowed tags, which allows dangerous tags to be processed by web browsers such as Internet Explorer and Safari, which ignore null characters and facilitate the exploitation of cross-site scripting (XSS) vulnerabilities.

    Published: 14 Jul 2004
    2.1
    Low

    CVE-2004-0653

    Last Modified: 16 Apr 2026

    Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files.

    Published: 13 Jul 2004
    5
    Medium

    CVE-2004-0657

    Last Modified: 16 Apr 2026

    Integer overflow in the NTP daemon (NTPd) before 4.0 causes the NTP server to return the wrong date/time offset when a client requests a date/time that is more than 34 years away from the server's time.

    Published: 13 Jul 2004
    7.2
    High

    CVE-2004-0658

    Last Modified: 16 Apr 2026

    Integer overflow in the hpsb_alloc_packet function (incorrectly reported as alloc_hpsb_packet) in IEEE 1394 (Firewire) driver 2.4 and 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via the functions (1) raw1394_write, (2) state_connected, (3) handle_remote_request, or (4) hpsb_make_writebpacket.

    Published: 13 Jul 2004
    6.8
    Medium

    CVE-2004-0672

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6 allows remote attackers to execute script as other users via (1) script that starts with %00 in the numOfExpressions parameter or (2) the mobjtype parameter.

    Published: 13 Jul 2004
    5
    Medium

    CVE-2004-0683

    Last Modified: 16 Apr 2026

    Symantec Norton AntiVirus 2002 and 2003 allows remote attackers to cause a denial of service (CPU consumption) via a compressed archive that contains a large number of directories.

    Published: 13 Jul 2004
    4.6
    Medium

    CVE-2004-0647

    Last Modified: 16 Apr 2026

    shorewall 1.4.10c and earlier, and 2.0.x before 2.0.3a, allows local users to overwrite arbitrary files via a symlink attack on the chains-$$ temporary file.

    Published: 13 Jul 2004
    10
    Critical

    CVE-2004-0648

    Last Modified: 16 Apr 2026

    Mozilla (Suite) before 1.7.1, Firefox before 0.9.2, and Thunderbird before 0.7.2 allow remote attackers to launch arbitrary programs via a URI referencing the shell: protocol.

    Published: 13 Jul 2004
    7.2
    High

    CVE-2004-0652

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 7.0 through 7.0 Service Pack 4, and 8.1 through 8.1 Service Pack 2, allows attackers to obtain the username and password for booting the server by directly accessing certain internal methods.

    Published: 13 Jul 2004
    10
    Critical

    CVE-2004-0659

    Last Modified: 16 Apr 2026

    Buffer overflow in TranslateFilename for common.c in MPlayer 1.0pre4 allows remote attackers to execute arbitrary code via a long file name.

    Published: 13 Jul 2004