CVE Feed

    Dashboard / CVE

    7.2
    High

    CVE-2004-0579

    Last Modified: 16 Apr 2026

    Format string vulnerability in super before 3.23 allows local users to execute arbitrary code as root.

    Published: 23 Jun 2004
    6.8
    Medium

    CVE-2004-0584

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Horde IMP 3.2.3 and earlier, before a "security fix," does not properly validate input, which allows remote attackers to execute arbitrary script as other users via script or HTML in an e-mail message, possibly triggering a cross-site scripting (XSS) vulnerability.

    Published: 23 Jun 2004
    10
    Critical

    CVE-2004-0586

    Last Modified: 16 Apr 2026

    acpRunner ActiveX 1.2.5.0 allows remote attackers to execute arbitrary code via the (1) DownLoadURL, (2) SaveFilePath, and (3) Download ActiveX methods.

    Published: 23 Jun 2004
    6.8
    Medium

    CVE-2004-0588

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the web mail module for Usermin 1.070 allows remote attackers to insert arbitrary HTML and script via e-mail messages.

    Published: 23 Jun 2004
    4.3
    Medium

    CVE-2004-0589

    Last Modified: 16 Apr 2026

    Cisco IOS 11.1(x) through 11.3(x) and 12.0(x) through 12.2(x), when configured for BGP routing, allows remote attackers to cause a denial of service (device reload) via malformed BGP (1) OPEN or (2) UPDATE messages.

    Published: 23 Jun 2004
    Unknown

    CVE-2004-0585

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0589. Reason: This candidate is a duplicate of CVE-2004-0589. Notes: All CVE users should reference CVE-2004-0589 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 23 Jun 2004
    5
    Medium

    CVE-2004-0583

    Last Modified: 16 Apr 2026

    The account lockout functionality in (1) Webmin 1.140 and (2) Usermin 1.070 does not parse certain character strings, which allows remote attackers to conduct a brute force attack to guess user IDs and passwords.

    Published: 23 Jun 2004
    4.6
    Medium

    CVE-2004-0581

    Last Modified: 16 Apr 2026

    ksymoops-gznm script in Mandrake Linux 9.1 through 10.0, and Corporate Server 2.1, allows local users to delete arbitrary files via a symlink attack on files in /tmp.

    Published: 23 Jun 2004
    7.2
    High

    CVE-2004-0619

    Last Modified: 16 Apr 2026

    Integer overflow in the ubsec_keysetup function for Linux Broadcom 5820 cryptonet driver allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a negative add_dsa_buf_bytes variable, which leads to a buffer overflow.

    Published: 23 Jun 2004
    7.2
    High

    CVE-2004-1345

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Sun StorEdge Enterprise Storage Manager (ESM) 2.1 for Solaris 8 and Solaris 9 allows local users with the "ESMUser" role to gain root access.

    Published: 21 Jun 2004
    2.1
    Low

    CVE-2004-0491

    Last Modified: 16 Apr 2026

    The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to mlock more memory than specified by the rlimit.

    Published: 21 Jun 2004
    2.1
    Low

    CVE-2004-1346

    Last Modified: 16 Apr 2026

    The Sun Solaris Volume Manager (SVM) on Solaris 9 allows local users to cause a denial of service (kernel panic) via a malformed probe request to the SVM.

    Published: 19 Jun 2004
    7.2
    High

    CVE-2004-0447

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Linux before 2.4.26 for IA64 allows local users to cause a denial of service, with unknown impact. NOTE: due to a typo, this issue was accidentally assigned CVE-2004-0477. This is the proper candidate to use for the Linux local DoS.

    Published: 19 Jun 2004
    7.2
    High

    CVE-2004-0495

    Last Modified: 16 Apr 2026

    Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.

    Published: 17 Jun 2004
    10
    Critical

    CVE-2004-0549

    Last Modified: 16 Apr 2026

    The WebBrowser ActiveX control, or the Internet Explorer HTML rendering engine (MSHTML), as used in Internet Explorer 6, allows remote attackers to execute arbitrary code in the Local Security context by using the showModalDialog method and modifying the location to execute code such as Javascript, as demonstrated using (1) delayed HTTP redirect operations, and an HTTP response with a Location: header containing a "URL:" prepended to a "ms-its" protocol URI, or (2) modifying the location attribute of the window, as exploited by the Download.ject (aka Scob aka Toofer) using the ADODB.Stream object.

    Published: 15 Jun 2004
    5
    Medium

    CVE-2004-0551

    Last Modified: 16 Apr 2026

    Cisco CatOS 5.x before 5.5(20) through 8.x before 8.2(2) and 8.3(2)GLX, as used in Catalyst switches, allows remote attackers to cause a denial of service (system crash and reload) by sending invalid packets instead of the final ACK portion of the three-way handshake to the (1) Telnet, (2) HTTP, or (3) SSH services, aka "TCP-ACK DoS attack."

    Published: 15 Jun 2004
    5
    Medium

    CVE-2004-1754

    Last Modified: 16 Apr 2026

    The DNS proxy (DNSd) for multiple Symantec Gateway Security products allows remote attackers to poison the DNS cache via a malicious DNS server query response that contains authoritative or additional records.

    Published: 15 Jun 2004
    10
    Critical

    CVE-2004-0607

    Last Modified: 16 Apr 2026

    The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication.

    Published: 15 Jun 2004
    7.5
    High

    CVE-2004-0538

    Last Modified: 16 Apr 2026

    LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow attackers to execute arbitrary code without warning the user.

    Published: 11 Jun 2004
    5
    Medium

    CVE-2004-0202

    Last Modified: 16 Apr 2026

    IDirectPlay4 Application Programming Interface (API) of Microsoft DirectPlay 7.0a thru 9.0b, as used in Windows Server 2003 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed packet.

    Published: 11 Jun 2004
    7.5
    High

    CVE-2004-0204

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2003 with Business Contact Manager, Microsoft Business Solutions CRM 1.2, and other products, allows remote attackers to read and delete arbitrary files via ".." sequences in the dynamicimag argument to crystalimagehandler.aspx.

    Published: 11 Jun 2004
    10
    Critical

    CVE-2004-0539

    Last Modified: 16 Apr 2026

    The "Show in Finder" button in the Safari web browser in Mac OS X 10.3.4 and 10.2.8 may execute downloaded applications, which could allow remote attackers to execute arbitrary code.

    Published: 11 Jun 2004
    7.2
    High

    CVE-2004-0548

    Last Modified: 16 Apr 2026

    Multiple stack-based buffer overflows in the word-list-compress functionality in compress.c for Aspell allow local users to execute arbitrary code via a long entry in the wordlist that is not properly handled when using the (1) "c" compress option or (2) "d" decompress option.

    Published: 11 Jun 2004
    5
    Medium

    CVE-2004-0547

    Last Modified: 16 Apr 2026

    Buffer overflow in the ODBC driver for PostgreSQL before 7.2.1 allows remote attackers to cause a denial of service (crash).

    Published: 11 Jun 2004
    10
    Critical

    CVE-2004-0542

    Last Modified: 16 Apr 2026

    PHP before 4.3.7 on Win32 platforms does not properly filter all shell metacharacters, which allows local or remote attackers to execute arbitrary code, overwrite files, and access internal environment variables via (1) the "%", "|", or ">" characters to the escapeshellcmd function, or (2) the "%" character to the escapeshellarg function.

    Published: 10 Jun 2004
    10
    Critical

    CVE-2004-0543

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute arbitrary SQL procedures and queries.

    Published: 10 Jun 2004
    7.2
    High

    CVE-2004-0544

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in LVM for AIX 5.1 and 5.2 allow local users to gain privileges via the (1) putlvcb or (2) getlvcb commands.

    Published: 10 Jun 2004
    7.2
    High

    CVE-2004-0545

    Last Modified: 16 Apr 2026

    LVM for AIX 5.1 and 5.2 allows local users to overwrite arbitrary files via a symlink attack.

    Published: 10 Jun 2004
    10
    Critical

    CVE-2004-0492

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.

    Published: 10 Jun 2004
    7.5
    High

    CVE-2004-0550

    Last Modified: 16 Apr 2026

    Buffer overflow in Real Networks RealPlayer 10 allows remote attackers to execute arbitrary code via a URL with a large number of "." (period) characters.

    Published: 10 Jun 2004
    5
    Medium

    CVE-2005-0761

    Last Modified: 16 Apr 2026

    Unknown vulnerability in ImageMagick before 6.1.8 allows remote attackers to cause a denial of service (application crash) via a crafted PSD file.

    Published: 9 Jun 2004
    7.5
    High

    CVE-2005-0762

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the SGI parser in ImageMagick before 6.0 allows remote attackers to execute arbitrary code via a crafted SGI image file.

    Published: 9 Jun 2004
    10
    Critical

    CVE-2004-0416

    Last Modified: 16 Apr 2026

    Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

    Published: 9 Jun 2004
    10
    Critical

    CVE-2004-0414

    Last Modified: 16 Apr 2026

    CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.

    Published: 9 Jun 2004
    5
    Medium

    CVE-2004-0417

    Last Modified: 16 Apr 2026

    Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space.

    Published: 9 Jun 2004
    2.1
    Low

    CVE-2004-0554

    Last Modified: 16 Apr 2026

    Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and frstor instructions, as originally demonstrated using a "crash.c" program.

    Published: 9 Jun 2004
    10
    Critical

    CVE-2004-0418

    Last Modified: 16 Apr 2026

    serve_notify in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle empty data lines, which may allow remote attackers to perform an "out-of-bounds" write for a single byte to execute arbitrary code or modify critical program data.

    Published: 9 Jun 2004
    5
    Medium

    CVE-2004-0778

    Last Modified: 16 Apr 2026

    CVS 1.11.x before 1.11.17, and 1.12.x before 1.12.9, allows remote attackers to determine the existence of arbitrary files and directories via the -X command for an alternate history file, which causes different error messages to be returned.

    Published: 9 Jun 2004
    5
    Medium

    CVE-2004-0527

    Last Modified: 16 Apr 2026

    KDE Konqueror 2.1.1 and 2.2.2 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

    Published: 8 Jun 2004
    7.2
    High

    CVE-2004-0529

    Last Modified: 16 Apr 2026

    The modified suexec program in cPanel, when configured for mod_php and compiled for Apache 1.3.31 and earlier without mod_phpsuexec, allows local users to execute untrusted shared scripts and gain privileges, as demonstrated using untainted scripts such as (1) proftpdvhosts or (2) addalink.cgi, a different vulnerability than CVE-2004-0490.

    Published: 8 Jun 2004
    7.2
    High

    CVE-2004-0530

    Last Modified: 16 Apr 2026

    The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the PHP user by inserting shared libraries into the appropriate path.

    Published: 8 Jun 2004
    Unknown

    CVE-2003-1047

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0540. Reason: This candidate is a duplicate of CVE-2004-0540. Notes: All CVE users should reference CVE-2004-0540 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 8 Jun 2004
    10
    Critical

    CVE-2004-0450

    Last Modified: 16 Apr 2026

    Format string vulnerability in the printlog function in log2mail before 0.2.5.2 allows local users or remote attackers to execute arbitrary code via format string specifiers in a logfile monitored by log2mail.

    Published: 8 Jun 2004
    10
    Critical

    CVE-2004-0522

    Last Modified: 16 Apr 2026

    Gallery 1.4.3 and earlier allows remote attackers to bypass authentication and obtain Gallery administrator privileges.

    Published: 8 Jun 2004
    10
    Critical

    CVE-2004-0524

    Last Modified: 16 Apr 2026

    Buffer overflow in the chpasswd command in the Change_passwd plugin before 4.0, as used in SquirrelMail, allows local users to gain root privileges via a long user name.

    Published: 8 Jun 2004
    5
    Medium

    CVE-2004-0525

    Last Modified: 16 Apr 2026

    HP Integrated Lights-Out (iLO) 1.10 and other versions before 1.55 allows remote attackers to cause a denial of service (hang) by accessing iLO using the TCP/IP reserved port zero.

    Published: 8 Jun 2004
    5
    Medium

    CVE-2004-0526

    Last Modified: 16 Apr 2026

    Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

    Published: 8 Jun 2004
    10
    Critical

    CVE-2004-0540

    Last Modified: 16 Apr 2026

    Microsoft Windows 2000, when running in a domain whose Fully Qualified Domain Name (FQDN) is exactly 8 characters long, does not prevent users with expired passwords from logging on to the domain.

    Published: 8 Jun 2004
    5
    Medium

    CVE-2004-0528

    Last Modified: 16 Apr 2026

    Netscape Navigator 7.1 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

    Published: 8 Jun 2004
    5
    Medium

    CVE-2004-0537

    Last Modified: 16 Apr 2026

    Opera 7.50 and earlier allows remote web sites to provide a "Shortcut Icon" (favicon) that is wider than expected, which could allow the web sites to spoof a trusted domain and facilitate phishing attacks using a wide icon and extra spaces.

    Published: 8 Jun 2004