Show filters
35 Total Results
Displaying 21-30 of 35
Sort by:
Attacker Value
Unknown
CVE-2005-2534
Disclosure Date: August 24, 2005 (last updated February 22, 2025)
Race condition in OpenVPN before 2.0.1, when --duplicate-cn is not enabled, allows remote attackers to cause a denial of service (server crash) via simultaneous TCP connections from multiple clients that use the same client certificate.
0
Attacker Value
Unknown
CVE-2005-2532
Disclosure Date: August 24, 2005 (last updated February 22, 2025)
OpenVPN before 2.0.1 does not properly flush the OpenSSL error queue when a packet can not be decrypted by the server, which allows remote authenticated attackers to cause a denial of service (client disconnection) via a large number of packets that can not be decrypted.
0
Attacker Value
Unknown
CVE-2005-2531
Disclosure Date: August 24, 2005 (last updated February 22, 2025)
OpenVPN before 2.0.1, when running with "verb 0" and without TLS authentication, does not properly flush the OpenSSL error queue when a client fails certificate authentication to the server and causes the error to be processed by the wrong client, which allows remote attackers to cause a denial of service (client disconnection) via a large number of failed authentication attempts.
0
Attacker Value
Unknown
CVE-2005-1195
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple heap-based buffer overflows in the code used to handle (1) MMS over TCP (MMST) streams or (2) RealMedia RTSP streams in xine-lib before 1.0, and other products that use xine-lib such as MPlayer 1.0pre6 and earlier, allow remote malicious servers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2005-0794
Disclosure Date: March 15, 2005 (last updated February 22, 2025)
ZPanel 2.0 and 2.5 beta 10 does not remove or protect installation scripts after they have been used, which allows remote attackers to reinstall the software and possibly cause a denial of service via a direct request to install.php.
0
Attacker Value
Unknown
CVE-2005-0793
Disclosure Date: March 15, 2005 (last updated February 22, 2025)
PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter.
0
Attacker Value
Unknown
CVE-2005-0792
Disclosure Date: March 15, 2005 (last updated February 22, 2025)
SQL injection vulnerability in ZPanel 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) uname parameter to index.php or (2) page parameter to zpanel.php.
0
Attacker Value
Unknown
CVE-2004-1187
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in the pnm_get_chunk function for xine 0.99.2, and other packages such as MPlayer that use the same code, allows remote attackers to execute arbitrary code via long PNA_TAG values, a different vulnerability than CVE-2004-1188.
0
Attacker Value
Unknown
CVE-2004-1188
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The pnm_get_chunk function in xine 0.99.2 and earlier, and other packages such as MPlayer that use the same code, does not properly verify that the chunk size is less than the PREAMBLE_SIZE, which causes a read operation with a negative length that leads to a buffer overflow via (1) RMF_TAG, (2) DATA_TAG, (3) PROP_TAG, (4) MDPR_TAG, and (5) CONT_TAG values, a different vulnerability than CVE-2004-1187.
0
Attacker Value
Unknown
CVE-2004-1455
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrary code via crafted playlists that result in a long vcd:// URL.
0