Show filters
403 Total Results
Displaying 351-360 of 403
Sort by:
Attacker Value
Unknown

CVE-2005-4568

Disclosure Date: December 29, 2005 (last updated February 22, 2025)
Multiple format string vulnerabilities in FTGate Technology (formerly known as Floosietek) FTGate 4.4 (aka Build 4.4.000 Oct 26 2005) allow remote attackers to execute arbitrary code via format string specifiers in the (1) USER, (2) PASS, and (3) TOP commands to the POP3 server; and the (4) LIST and (5) AUTHENTICATE commands to the IMAP server.
0
Attacker Value
Unknown

CVE-2005-4567

Disclosure Date: December 29, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in FTGate Technology (formerly known as Floosietek) FTGate 4.4 (Build 4.4.000 Oct 26 2005) allow remote attackers to inject arbitrary web script or HTML by sending (1) the href parameter to index.fts, or the param1 parameter to (2) /domains/index.fts, (3) /config/licence.fts, or (4) /config/systemacl.fts.
0
Attacker Value
Unknown

CVE-2005-4569

Disclosure Date: December 29, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in index.fts in FTGate Technology (formerly known as Floosietek) FTGate 4.4 (aka Build 4.4.000 Oct 26 2005) allows remote attackers to execute arbitrary code via a long tzoffset value.
0
Attacker Value
Unknown

CVE-2005-4525

Disclosure Date: December 28, 2005 (last updated February 22, 2025)
SmcGui.exe in Sygate Protection Agent 5.0 build 6144 allows local users to obtain management control over the agent by executing the GUI (SmcGui.exe) and then killing the process, which causes the privileged management GUI to launch.
0
Attacker Value
Unknown

CVE-2005-4473

Disclosure Date: December 22, 2005 (last updated February 22, 2025)
Unspecified vulnerability in Macromedia JRun 4 web server (JWS) allows remote attackers to view web application source code via "a malformed URL."
0
Attacker Value
Unknown

CVE-2005-4472

Disclosure Date: December 22, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in the Macromedia JRun 4 web server (JWS) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long request that is not properly handled during conversion to wide characters.
0
Attacker Value
Unknown

CVE-2005-4459

Disclosure Date: December 21, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in the NAT networking components vmnat.exe and vmnet-natd in VMWare Workstation 5.5, GSX Server 3.2, ACE 1.0.1, and Player 1.0 allows remote authenticated attackers, including guests, to execute arbitrary code via crafted (1) EPRT and (2) PORT FTP commands.
0
Attacker Value
Unknown

CVE-2005-4417

Disclosure Date: December 20, 2005 (last updated February 22, 2025)
The default configuration of Widcomm Bluetooth for Windows (BTW) 4.0.1.1500 and earlier, as installed on Belkin Bluetooth Software 1.4.2 Build 10 and ANYCOM Blue USB-130-250 Software 4.0.1.1500, and possibly other devices, sets null Authentication and Authorization values, which allows remote attackers to send arbitrary audio and possibly eavesdrop using the microphone via the Hands Free Audio Gateway and Headset profile.
0
Attacker Value
Unknown

CVE-2005-3360

Disclosure Date: December 14, 2005 (last updated February 22, 2025)
The installation of Trend Micro PC-Cillin Internet Security 2005 12.00 build 1244, and probably previous versions, uses insecure default ACLs, which allows local users to cause a denial of service (disabled service) and gain system privileges by modifying or moving critical program files.
0
Attacker Value
Unknown

CVE-2005-3967

Disclosure Date: December 03, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in the dosearchsite.action module in Atlassian Confluence 2.0.1 Build 321 allows remote attackers to inject arbitrary web script or HTML via the searchQuery.queryString search module parameter.
0