CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2004-0541

    Last Modified: 16 Apr 2026

    Buffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when compiled with NTLM handlers enabled, allows remote attackers to execute arbitrary code via a long password ("pass" variable).

    Published: 8 Jun 2004
    10
    Critical

    CVE-2004-0836

    Last Modified: 16 Apr 2026

    Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).

    Published: 4 Jun 2004
    2.1
    Low

    CVE-2003-0193

    Last Modified: 16 Apr 2026

    msxlsview.sh in xlsview for catdoc 0.91 and earlier allows local users to overwrite arbitrary files via a symlink attack on predictable temporary file names ("word$$.html").

    Published: 3 Jun 2004
    Unknown

    CVE-2003-0687

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate has been revoked by its Candidate Numbering Authority (CNA) because it was internally assigned to a problem that was not reachable (the affected routine was not used by the software). Notes: none

    Published: 3 Jun 2004
    5
    Medium

    CVE-2003-1045

    Last Modified: 16 Apr 2026

    votes.cgi in Bugzilla 2.16.3 and earlier, and 2.17.1 through 2.17.4, allows remote attackers to read a user's voting page when that user has voted on a restricted bug, which allows remote attackers to read potentially sensitive voting information by modifying the who parameter.

    Published: 3 Jun 2004
    5
    Medium

    CVE-2004-0412

    Last Modified: 16 Apr 2026

    Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.

    Published: 3 Jun 2004
    7.5
    High

    CVE-2003-1046

    Last Modified: 16 Apr 2026

    describecomponents.cgi in Bugzilla 2.17.3 and 2.17.4 does not properly verify group membership when bug entry groups are used, which allows remote attackers to list component descriptions for otherwise restricted products.

    Published: 3 Jun 2004
    5
    Medium

    CVE-2004-0476

    Last Modified: 16 Apr 2026

    Buffer overflow in 3Com OfficeConnect Remote 812 ADSL Router 1.1.9.4 allows remote attackers to cause a denial of service (reboot or packet loss) via a long string containing Telnet escape characters to the Telnet port.

    Published: 3 Jun 2004
    7.2
    High

    CVE-2004-0490

    Last Modified: 16 Apr 2026

    cPanel, when compiling Apache 1.3.29 and PHP with the mod_phpsuexec option, does not set the --enable-discard-path option, which causes php to use the SCRIPT_FILENAME variable to find and execute a script instead of the PATH_TRANSLATED variable, which allows local users to execute arbitrary PHP code as other users via a URL that references the attacker's script after the user's script, which executes the attacker's script with the user's privileges, a different vulnerability than CVE-2004-0529.

    Published: 3 Jun 2004
    5
    Medium

    CVE-2004-0503

    Last Modified: 16 Apr 2026

    Microsoft Outlook 2003 allows remote attackers to bypass the default zone restrictions and execute script within media files via a Rich Text Format (RTF) message containing an OLE object for the Windows Media Player, which bypasses Media Player's setting to disallow scripting and may lead to unprompted installation of an executable when exploited in conjunction with predictable-file-location exposures such as CVE-2004-0502.

    Published: 3 Jun 2004
    7.5
    High

    CVE-2004-0518

    Last Modified: 16 Apr 2026

    Unknown vulnerability in AppleFileServer for Mac OS X 10.3.4, related to "the use of SSH and reporting errors," has unknown impact and attack vectors.

    Published: 3 Jun 2004
    10
    Critical

    CVE-2004-0513

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Mac OS X before 10.3.4 has unknown impact and attack vectors related to "logging when tracing system calls."

    Published: 3 Jun 2004
    10
    Critical

    CVE-2003-1042

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in collectstats.pl for Bugzilla 2.16.3 and earlier allows remote authenticated users with editproducts privileges to execute arbitrary SQL via the product name.

    Published: 3 Jun 2004
    Unknown

    CVE-2004-0076

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was removed from consideration by its Candidate Numbering Authority. Notes: none

    Published: 3 Jun 2004
    7.2
    High

    CVE-2004-0134

    Last Modified: 16 Apr 2026

    cpr (libcpr) in SGI IRIX before 6.5.25 allows local users to gain privileges by loading a user provided library while restarting the checkpointed process.

    Published: 3 Jun 2004
    7.2
    High

    CVE-2004-0228

    Last Modified: 16 Apr 2026

    Integer signedness error in the cpufreq proc handler (cpufreq_procctl) in Linux kernel 2.6 allows local users to gain privileges.

    Published: 3 Jun 2004
    3.6
    Low

    CVE-2004-0435

    Last Modified: 16 Apr 2026

    Certain "programming errors" in the msync system call for FreeBSD 5.2.1 and earlier, and 4.10 and earlier, do not properly handle the MS_INVALIDATE operation, which leads to cache consistency problems that allow a local user to prevent certain changes to files from being committed to disk.

    Published: 3 Jun 2004
    10
    Critical

    CVE-2004-0487

    Last Modified: 16 Apr 2026

    A certain ActiveX control in Symantec Norton AntiVirus 2004 allows remote attackers to cause a denial of service (resource consumption) and possibly execute arbitrary programs.

    Published: 3 Jun 2004
    4.6
    Medium

    CVE-2004-0517

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Mac OS X 10.3.4, related to "handling of process IDs during package installation," a different vulnerability than CVE-2004-0516.

    Published: 3 Jun 2004
    5
    Medium

    CVE-2004-0501

    Last Modified: 16 Apr 2026

    Outlook 2003 allows remote attackers to bypass intended access restrictions and cause Outlook to request a URL from a remote site via an HTML e-mail message containing a Vector Markup Language (VML) entity whose src parameter points to the remote site, which could allow remote attackers to know when a message has been read, verify valid e-mail addresses, and possibly leak other information.

    Published: 3 Jun 2004
    5
    Medium

    CVE-2004-0502

    Last Modified: 16 Apr 2026

    Outlook 2003, when replying to an e-mail message, stores certain files in a predictable location for the "src" of an img tag of the original message, which allows remote attackers to bypass zone restrictions and exploit other issues that rely on predictable locations, as demonstrated using a shell: URI.

    Published: 3 Jun 2004
    7.2
    High

    CVE-2004-0514

    Last Modified: 16 Apr 2026

    Unknown vulnerability in LoginWindow for Mac OS X 10.3.4, related to "handling of directory services lookups."

    Published: 3 Jun 2004
    4.6
    Medium

    CVE-2004-0515

    Last Modified: 16 Apr 2026

    Unknown vulnerability in LoginWindow for Mac OS X 10.3.4, related to "handling of console log files."

    Published: 3 Jun 2004
    4.6
    Medium

    CVE-2004-0516

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Mac OS X 10.3.4, related to "package installation scripts," a different vulnerability than CVE-2004-0517.

    Published: 3 Jun 2004
    10
    Critical

    CVE-2003-1043

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Bugzilla 2.16.3 and earlier, and 2.17.1 through 2.17.4, allows remote authenticated users with editkeywords privileges to execute arbitrary SQL via the id parameter to editkeywords.cgi.

    Published: 3 Jun 2004
    7.5
    High

    CVE-2003-1044

    Last Modified: 16 Apr 2026

    editproducts.cgi in Bugzilla 2.16.3 and earlier, when usebuggroups is enabled, does not properly remove group add privileges from a group that is being deleted, which allows users with those privileges to perform unauthorized additions to the next group that is assigned with the original group ID.

    Published: 3 Jun 2004
    7.2
    High

    CVE-2004-0536

    Last Modified: 16 Apr 2026

    Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.

    Published: 2 Jun 2004
    7.5
    High

    CVE-2004-2044

    Last Modified: 16 Apr 2026

    PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke 7x do not properly use the eregi() PHP function with $_SERVER['PHP_SELF'] to identify the calling script, which allows remote attackers to directly access scripts, obtain path information via a PHP error message, and possibly gain access, as demonstrated using an HTTP request that contains the "admin.php" string.

    Published: 1 Jun 2004
    10
    Critical

    CVE-2004-0523

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.

    Published: 1 Jun 2004
    7.5
    High

    CVE-2004-2042

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary SQL code and gain sensitive information via (1) content parameter to content.php, (2) content_id parameter to content.php, or (3) list parameter to news.php.

    Published: 29 May 2004
    4.3
    Medium

    CVE-2004-2038

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Land Down Under (LDU) before LDU 700 allows remote attackers to inject arbitrary web script or HTML via a BBcode img tag in (1) functions.php, (2) header.php or (3) auth.inc.php.

    Published: 29 May 2004
    5
    Medium

    CVE-2004-2039

    Last Modified: 16 Apr 2026

    e107 0.615 allows remote attackers to obtain sensitive information via a direct request to (1) alt_news.php, (2) backend_menu.php, (3) clock_menu.php, (4) counter_menu.php, (5) login_menu.php, and other files, which reveal the full path in a PHP error message.

    Published: 29 May 2004
    4.3
    Medium

    CVE-2004-2040

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script or HTML via the (1) LAN_407 parameter to clock_menu.php, (2) "email article to a friend" field, (3) "submit news" field, or (4) avmsg parameter to usersettings.php.

    Published: 29 May 2004
    7.5
    High

    CVE-2004-2041

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote attackers to execute arbitrary PHP code by modifying the p parameter to reference a URL on a remote web server that contains the code.

    Published: 29 May 2004
    6.8
    Medium

    CVE-2004-0957

    Last Modified: 16 Apr 2026

    Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities.

    Published: 29 May 2004
    7.5
    High

    CVE-2004-0397

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitrary code via a (1) DAV2 REPORT query or (2) get-dated-rev svn-protocol command.

    Published: 28 May 2004
    5
    Medium

    CVE-2004-0485

    Last Modified: 16 Apr 2026

    The default protocol helper for the disk: URI on Mac OS X 10.3.3 and 10.2.8 allows remote attackers to write arbitrary files by causing a disk image file (.dmg) to be mounted as a disk volume.

    Published: 28 May 2004
    7.5
    High

    CVE-2004-2036

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the art_print function in print.inc.php in unknown versions of jPortal before 2.3.1 allows remote attackers to inject arbitrary SQL commands via the id parameter.

    Published: 28 May 2004
    4.6
    Medium

    CVE-2004-0402

    Last Modified: 16 Apr 2026

    Buffer overflow in xpcd-svga in xpcd before 2.08, and possibly other versions, may allow local users to execute arbitrary code.

    Published: 28 May 2004
    7.6
    High

    CVE-2004-0486

    Last Modified: 16 Apr 2026

    HelpViewer in Mac OS X 10.3.3 and 10.2.8 processes scripts that it did not initiate, which can allow attackers to execute arbitrary code, an issue that was originally reported as a directory traversal vulnerability in the Safari web browser using the runscript parameter in a help: URI handler.

    Published: 28 May 2004
    7.6
    High

    CVE-2004-0489

    Last Modified: 16 Apr 2026

    Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option.

    Published: 28 May 2004
    2.1
    Low

    CVE-2004-0565

    Last Modified: 16 Apr 2026

    Floating point information leak in the context switch code for Linux 2.4.x only checks the MFH bit but does not verify the FPH owner, which allows local users to read register values of other processes by setting the MFH bit.

    Published: 28 May 2004
    5
    Medium

    CVE-2004-2035

    Last Modified: 16 Apr 2026

    MiniShare 1.3.2 allows remote attackers to cause a denial of service (crash) via a malformed HTTP GET or HEAD request without the proper number of trailing CRLF sequences.

    Published: 26 May 2004
    5
    Medium

    CVE-2004-2033

    Last Modified: 16 Apr 2026

    Orenosv 0.5.9f allows remote attackers to cause a denial of service (crash) via a long HTTP GET request.

    Published: 26 May 2004
    2.1
    Low

    CVE-2004-2135

    Last Modified: 16 Apr 2026

    cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.

    Published: 26 May 2004
    7.5
    High

    CVE-2004-2032

    Last Modified: 16 Apr 2026

    Netgear RP114 allows remote attackers to bypass the keyword based URL filtering by requesting a long URL, as demonstrated using a large number of %20 (hex-encoded space) sequences.

    Published: 24 May 2004
    6.8
    Medium

    CVE-2004-0520

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in mime.php for SquirrelMail before 1.4.3 allows remote attackers to insert arbitrary HTML and script via the content-type mail header, as demonstrated using read_body.php.

    Published: 23 May 2004
    4.3
    Medium

    CVE-2004-2030

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.jsp for Liferay before 2.2.0 release 10/1/2004 allow remote attackers to inject arbitrary web script or HTML, as demonstrated using the message subject.

    Published: 22 May 2004
    5
    Medium

    CVE-2004-2029

    Last Modified: 16 Apr 2026

    The Util_DecodeHTTPAuth function in BNBT BitTorrent Tracker Beta 7.5 Release 2 and earlier allows remote attackers to cause a denial of service (crash) via a Basic Authorization HTTP request with a "A==" value.

    Published: 22 May 2004
    4.3
    Medium

    CVE-2004-2028

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in stats.php in e107 allows remote attackers to inject arbitrary web script or HTML via the referer parameter to log.php.

    Published: 21 May 2004