Show filters
205 Total Results
Displaying 171-180 of 205
Sort by:
Attacker Value
Unknown
CVE-2004-0809
Disclosure Date: September 16, 2004 (last updated October 04, 2023)
The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.
0
Attacker Value
Unknown
CVE-2004-0905
Disclosure Date: September 14, 2004 (last updated February 22, 2025)
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a frame or page in another domain.
0
Attacker Value
Unknown
CVE-2004-0232
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
Multiple format string vulnerabilities in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.
0
Attacker Value
Unknown
CVE-2004-0432
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
ProFTPD 1.2.9 treats the Allow and Deny directives for CIDR based ACL entries as if they were AllowAll, which could allow FTP clients to bypass intended access restrictions.
0
Attacker Value
Unknown
CVE-2004-0226
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
Multiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.
0
Attacker Value
Unknown
CVE-2004-0231
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to "Insecure temporary file and directory creations."
0
Attacker Value
Unknown
CVE-2004-0229
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
The framebuffer driver in Linux kernel 2.6.x does not properly use the fb_copy_cmap function, with unknown impact.
0
Attacker Value
Unknown
CVE-2004-0419
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote attackers to connect to the port, in violation of the intended restrictions.
0
Attacker Value
Unknown
CVE-2004-1737
Disclosure Date: August 16, 2004 (last updated February 22, 2025)
SQL injection vulnerability in auth_login.php in Cacti 0.8.5a allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password parameters.
0
Attacker Value
Unknown
CVE-2004-0417
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space.
0