Show filters
50 Total Results
Displaying 41-50 of 50
Sort by:
Attacker Value
Unknown

CVE-2004-0817

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
0
Attacker Value
Unknown

CVE-2004-0263

Disclosure Date: November 23, 2004 (last updated February 22, 2025)
PHP 4.3.4 and earlier in Apache 1.x and 2.x (mod_php) can leak global variables between virtual hosts that are handled by the same Apache child process but have different settings, which could allow remote attackers to obtain sensitive information.
0
Attacker Value
Unknown

CVE-2004-0559

Disclosure Date: October 20, 2004 (last updated February 22, 2025)
The maketemp.pl script in Usermin 1.070 and 1.080 allows local users to overwrite arbitrary files at install time via a symlink attack on the /tmp/.usermin directory.
0
Attacker Value
Unknown

CVE-2004-0827

Disclosure Date: September 16, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3) DIB files.
0
Attacker Value
Unknown

CVE-2004-1997

Disclosure Date: May 05, 2004 (last updated February 22, 2025)
Kolab stores OpenLDAP passwords in plaintext in the slapd.conf file, which may be installed world-readable, which allows local users to gain privileges.
0
Attacker Value
Unknown

CVE-2004-0173

Disclosure Date: April 15, 2004 (last updated February 22, 2025)
Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences.
0
Attacker Value
Unknown

CVE-2004-1884

Disclosure Date: March 23, 2004 (last updated February 22, 2025)
Ipswitch WS_FTP Server 4.0.2 has a backdoor XXSESS_MGRYY username with a default password, which allows remote attackers to gain access.
0
Attacker Value
Unknown

CVE-2000-0913

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.
0
Attacker Value
Unknown

CVE-1999-0107

Disclosure Date: December 30, 1997 (last updated February 22, 2025)
Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a large number of / characters.
0
Attacker Value
Unknown

CVE-1999-0045

Disclosure Date: December 10, 1996 (last updated February 22, 2025)
List of arbitrary files on Web host via nph-test-cgi script.
0