5
    Medium

    CVE-2004-0942

    Last Modified: 11 Jul 2017

    Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request with a MIME header containing multiple lines with a large number of space characters.

    Source:GreenwooD
    Published:1 Nov 2004
    7.8
    High

    CVE-2004-0940

    Last Modified: 31 Jan 2017

    Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.

    Source:xCrZx
    Published:21 Oct 2004
    7.5
    High

    CVE-2004-0937

    Last Modified: 16 Apr 2026

    Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Source:oc192
    Published:19 Nov 2004
    7.5
    High

    CVE-2004-0936

    Last Modified: 16 Apr 2026

    RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Source:oc192
    Published:19 Nov 2004
    7.5
    High

    CVE-2004-0935

    Last Modified: 16 Apr 2026

    Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Source:oc192
    Published:19 Nov 2004
    7.5
    High

    CVE-2004-0934

    Last Modified: 16 Apr 2026

    Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Source:oc192
    Published:19 Nov 2004
    7.5
    High

    CVE-2004-0933

    Last Modified: 16 Apr 2026

    Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Source:oc192
    Published:19 Nov 2004
    7.5
    High

    CVE-2004-0932

    Last Modified: 16 Apr 2026

    McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

    Source:oc192
    Published:19 Nov 2004
    7.2
    High

    CVE-2004-0894

    Last Modified: 22 Nov 2017

    LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly validate connection information, which allows local users to gain privileges via a specially-designed program.

    Source:Cesar Cerrudo
    Published:15 Dec 2004
    9.8
    Critical

    CVE-2004-0847

    Last Modified: 9 Mar 2013

    The Microsoft .NET forms authentication capability for ASP.NET allows remote attackers to bypass authentication for .aspx files in restricted directories via a request containing a (1) "\" (backslash) or (2) "%5C" (encoded backslash), aka "Path Validation Vulnerability."

    Source:anonymous
    Published:6 Oct 2004
    7.5
    High

    CVE-2004-0842

    Last Modified: 24 Jan 2013

    Internet Explorer 6.0 SP1 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (application crash from "memory corruption") via certain malformed Cascading Style Sheet (CSS) elements that trigger heap-based buffer overflows, as demonstrated using the "<STYLE>@;/*" string, possibly due to a missing comment terminator that may cause an invalid length to trigger a large memory copy operation, aka the "CSS Heap Memory Corruption Vulnerability."

    Source:Phuong Nguyen
    Published:14 Sept 2004
    5
    Medium

    CVE-2004-0841

    Last Modified: 20 Jan 2013

    Internet Explorer 6.x allows remote attackers to install arbitrary programs via mousedown events that call the Popup.show method and use drag-and-drop actions in a popup window, aka "HijackClick 3" and the "Script in Image Tag File Download Vulnerability."

    Source:Paul
    Published:14 Sept 2004
    7.5
    High

    CVE-2004-0835

    Last Modified: 9 Mar 2013

    MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.

    Source:Oleksandr Byelkin
    Published:23 Mar 2004
    2.1
    Low

    CVE-2004-0824

    Last Modified: 16 Apr 2026

    PPPDialer for Mac OS X 10.2.8 through 10.3.5 allows local users to overwrite system files via a symlink attack on PPPDialer log files.

    Source:B-r00t
    Published:31 Dec 2004
    4.6
    Medium

    CVE-2004-0820

    Last Modified: 14 Aug 2017

    Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.

    Source:Petrol Designs
    Published:28 Aug 2004
    7.5
    High

    CVE-2004-0816

    Last Modified: 10 Mar 2013

    Integer underflow in the firewall logging rules for iptables in Linux before 2.6.8 allows remote attackers to cause a denial of service (application crash) via a malformed IP packet.

    Source:Richard Hart
    Published:26 Oct 2004
    7.2
    High

    CVE-2004-0806

    Last Modified: 7 Mar 2019

    cdrecord in the cdrtools package before 2.01, when installed setuid root, does not properly drop privileges before executing a program specified in the RSH environment variable, which allows local users to gain privileges.

    Source:I)ruid
    Published:9 Sept 2004
    7.5
    High

    CVE-2004-0798

    Last Modified: 27 Oct 2016

    Buffer overflow in the _maincfgret.cgi script for Ipswitch WhatsUp Gold before 8.03 Hotfix 1 allows remote attackers to execute arbitrary code via a long instancename parameter.

    Source:LoWNOISE
    Published:27 Aug 2004
    5
    Medium

    CVE-2004-0791

    Last Modified: 21 May 2013

    Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via a blind throughput-reduction attack using spoofed Source Quench packets, aka the "ICMP Source Quench attack." NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.

    Source:Fernando Gont
    Published:12 Apr 2005
    5
    Medium

    CVE-2004-0790

    Last Modified: 16 Apr 2026

    Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "blind connection-reset attack." NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.

    Source:houseofdabus
    Published:12 Apr 2005
    5
    Medium

    CVE-2004-0789

    Last Modified: 16 Apr 2026

    Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by triggering a communications loop via (a) DNS query packets with localhost as a spoofed source address, or (b) a response packet that triggers a response packet.

    Published:31 Dec 2004
    7.5
    High

    CVE-2004-0777

    Last Modified: 16 Apr 2026

    Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUG_LOGIN) is enabled, allows remote attackers to execute arbitrary code.

    Source:ktha
    Published:19 Aug 2004
    10
    Critical

    CVE-2004-0771

    Last Modified: 15 Nov 2017

    Buffer overflow in the extract_one function from lhext.c in LHA may allow attackers to execute arbitrary code via a long w (working directory) command line option, a different issue than CVE-2004-0769. NOTE: this issue may be REJECTED if there are not any cases in which LHA is setuid or is otherwise used across security boundaries.

    Source:Lukasz Wojtow
    Published:15 May 2004
    5
    Medium

    CVE-2004-0763

    Last Modified: 23 Jan 2013

    Mozilla Firefox 0.9.1 and 0.9.2 allows remote web sites to spoof certificates of trusted web sites via redirects and Javascript that uses the "onunload" method.

    Source:E.Kellinis
    Published:26 Jul 2004
    6.4
    Medium

    CVE-2004-0760

    Last Modified: 21 Jan 2013

    Mozilla allows remote attackers to cause Mozilla to open a URI as a different MIME type than expected via a null character (%00) in an FTP URI.

    Source:Mind Warper
    Published:11 Jul 2004
    5
    Medium

    CVE-2004-0751

    Last Modified: 8 Sept 2016

    The char_buffer_read function in the mod_ssl module for Apache 2.x, when using reverse proxying to an SSL server, allows remote attackers to cause a denial of service (segmentation fault).

    Source:M. _Alex_ Hankins
    Published:10 Sept 2004
    5
    Medium

    CVE-2004-0740

    Last Modified: 16 Apr 2026

    The HTTP server in Lexmark T522 and possibly other models allows remote attackers to cause a denial of service (server crash, reload, or hang) via an HTTP header with a long Host field, possibly triggering a buffer overflow.

    Source:Peter Kruse
    Published:23 Jul 2004
    7.5
    High

    CVE-2004-0735

    Last Modified: 16 Apr 2026

    Buffer overflow in Medal of Honor (1) Allied Assault 1.11v9 and earlier, (2) Breakthrough 2.40b and earlier, and (3) Spearhead 2.15 and earlier, when playing on a Local Area Network (LAN), allows remote attackers to execute arbitrary code via vectors such as (1) the getinfo query, (2) the connect packet, and other unknown vectors.

    Source:millhouse
    Published:23 Jul 2004
    7.5
    High

    CVE-2004-0734

    Last Modified: 22 Nov 2017

    Web_Store.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter.

    Source:Action Spider
    Published:23 Jul 2004
    7.5
    High

    CVE-2004-0733

    Last Modified: 27 Oct 2016

    Format string vulnerability in OllyDbg 1.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers that are directly provided to the OutputDebugString function call.

    Source:Ahmet Cihan
    Published:23 Jul 2004
    5
    Medium

    CVE-2004-0728

    Last Modified: 16 Apr 2026

    The Remote Control Client service in Microsoft's Systems Management Server (SMS) 2.50.2726.0 allows remote attackers to cause a denial of service (crash) via a data packet to TCP port 2702 that causes the server to read or write to an invalid memory address.

    Source:MacDefender
    Published:23 Jul 2004
    7.5
    High

    CVE-2004-0727

    Last Modified: 20 Jan 2013

    Microsoft Internet Explorer 6.0.2800.1106 on Microsoft Windows XP SP2, and other versions including 5.01 and 5.5, allows remote web servers to bypass zone restrictions and execute arbitrary code in the local computer zone by redirecting a function to another function with the same name, as demonstrated by SimilarMethodNameRedir, aka the "Similar Method Name Redirection Cross Domain Vulnerability."

    Source:Paul
    Published:23 Jul 2004
    6.8
    Medium

    CVE-2004-0725

    Last Modified: 21 Jan 2013

    Cross-site scripting (XSS) vulnerability in help.php in Moodle 1.3.2 and 1.4 dev allows remote attackers to inject arbitrary web script or HTML via the file parameter.

    Source:morpheus[bd]
    Published:23 Jul 2004
    10
    Critical

    CVE-2004-0722

    Last Modified: 24 Jan 2013

    Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and possibly earlier versions, allows remote attackers to execute arbitrary code.

    Source:zen-parse
    Published:22 Jul 2004
    7.5
    High

    CVE-2004-0695

    Last Modified: 6 Mar 2011

    Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbitrary code via a long FTP command.

    Source:Metasploit
    Published:16 Jul 2004
    7.5
    High

    CVE-2004-0691

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code.

    Source:infamous41md
    Published:18 Aug 2004
    5
    Medium

    CVE-2004-0683

    Last Modified: 28 Mar 2016

    Symantec Norton AntiVirus 2002 and 2003 allows remote attackers to cause a denial of service (CPU consumption) via a compressed archive that contains a large number of directories.

    Source:Bipin Gautam
    Published:13 Jul 2004
    7.5
    High

    CVE-2004-0682

    Last Modified: 20 Jan 2013

    comersus_gatewayPayPal.asp in Comersus Cart 5.09, and possibly other versions before 5.098, allows remote attackers to change the prices of items by directly modifying them in the URL.

    Source:Thomas Ryan
    Published:13 Jul 2004
    6.8
    Medium

    CVE-2004-0681

    Last Modified: 20 Jan 2013

    Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_customerAuthenticateForm.asp, (2) comersus_backoffice_message.asp, (3) comersus_supportError.asp, or (4) comersus_message.asp in Comersus Cart 5.09 allow remote attackers to execute web script as other users via the message parameter.

    Source:Thomas Ryan
    Published:13 Jul 2004
    4.3
    Medium

    CVE-2004-0678

    Last Modified: 20 Jan 2013

    Cross-site scripting (XSS) in one2planet.infolet.InfoServlet in 12Planet Chat Server 2.9 allows remote attackers to execute arbitrary script as other users via the page parameter.

    Source:Donato Ferrante
    Published:13 Jul 2004
    10
    Critical

    CVE-2004-0676

    Last Modified: 20 Jan 2013

    Directory traversal vulnerability in Fastream NETFile FTP/Web Server 6.7.2.1085 and earlier allows remote attackers to create or delete arbitrary files via .. (dot dot) and // (double slash) sequences in the filename parameter.

    Source:Andres Tarasco Acuna
    Published:13 Jul 2004
    6.8
    Medium

    CVE-2004-0675

    Last Modified: 20 Jan 2013

    Cross-site scripting (XSS) vulnerability in (1) cart32.exe or (2) c32web.exe in Cart32 shopping cart allows remote attackers to execute arbitrary web script via the cart32 parameter to a GetLatestBuilds command.

    Source:Dr.Ponidi Haryanto
    Published:13 Jul 2004
    6.8
    Medium

    CVE-2004-0673

    Last Modified: 20 Jan 2013

    Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web script as other users via an invalid request that is echoed in the resulting error message.

    Source:Donato Ferrante
    Published:13 Jul 2004
    6.8
    Medium

    CVE-2004-0672

    Last Modified: 20 Jan 2013

    Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMinder Web Edition 5.6 allows remote attackers to execute script as other users via (1) script that starts with %00 in the numOfExpressions parameter or (2) the mobjtype parameter.

    Published:13 Jul 2004
    5
    Medium

    CVE-2004-0671

    Last Modified: 20 Jan 2013

    Brightmail Spamfilter 6.0 and earlier beta releases allows remote attackers to read mail from other users by modifying the id parameter in a viewMsgDetails.do request.

    Source:Thomas Springer
    Published:13 Jul 2004
    5
    Medium

    CVE-2004-0668

    Last Modified: 20 Jan 2013

    Web Access in Lotus Domino 6.5.1 allows remote attackers to cause a denial of service (server crash) via a large e-mail message, as demonstrated using a large image attachment.

    Source:Andreas Klein
    Published:13 Jul 2004
    5
    Medium

    CVE-2004-0665

    Last Modified: 20 Jan 2013

    csFAQ.cgi in csFAQ allows remote attackers to gain sensitive information via an invalid database parameter, which reveals the path to the web server in an error message.

    Source:DarkBicho
    Published:13 Jul 2004
    5
    Medium

    CVE-2004-0664

    Last Modified: 23 Dec 2016

    Directory traversal vulnerability in modules.php in PowerPortal 1.x allows remote attackers to list arbitrary directories via a .. (dot dot) in the files parameter.

    Source:DarkBicho
    Published:13 Jul 2004
    6.8
    Medium

    CVE-2004-0660

    Last Modified: 8 Dec 2016

    Cross-site scripting (XSS) vulnerability in (1) show_archives.php, (2) show_news.php, and possibly other php files in CuteNews 1.3.1 allows remote attackers to inject arbitrary script or HTML via the id parameter.

    Source:DarkBicho
    Published:13 Jul 2004
    10
    Critical

    CVE-2004-0659

    Last Modified: 28 Mar 2016

    Buffer overflow in TranslateFilename for common.c in MPlayer 1.0pre4 allows remote attackers to execute arbitrary code via a long file name.

    Source:c0ntex
    Published:13 Jul 2004