Show filters
79 Total Results
Displaying 51-60 of 79
Sort by:
Attacker Value
Unknown

CVE-2006-5961

Disclosure Date: November 17, 2006 (last updated October 04, 2023)
Buffer overflow in Mercury Mail Transport System 4.01b for Windows has unknown impact and attack vectors, as originally reported in a GLEG VulnDisco pack. NOTE: the provenance of this information is unknown; the details are obtained from third party information. The original researcher is reliable.
0
Attacker Value
Unknown

CVE-2006-5134

Disclosure Date: October 03, 2006 (last updated October 04, 2023)
Mercury SiteScope 8.2 (8.1.2.0) allows remote authenticated users to cause a denial of service (loss of connectivity to the classic interface) via attempted HTML injection into the "new monitor description" field.
0
Attacker Value
Unknown

CVE-2006-5122

Disclosure Date: October 03, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Mercury SiteScope 8.2 (8.1.2.0) allow remote authenticated users to inject arbitrary web script or HTML via (1) "any field create name field" except "create new group name" or (2) any description field.
0
Attacker Value
Unknown

CVE-2006-3669

Disclosure Date: July 18, 2006 (last updated October 04, 2023)
Mercury Messenger, possibly 1.7.1.1 and other versions, when running on a multi-user Mac OS X platform, stores chat logs with world-readable permissions within the /Users directory, which allows local users to read the chat logs from other users.
0
Attacker Value
Unknown

CVE-2006-1255

Disclosure Date: March 19, 2006 (last updated February 22, 2025)
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long string to the (1) LOGIN or (2) SELECT command, a different set of attack vectors and possibly a different vulnerability than CVE-2003-1177.
0
Attacker Value
Unknown

CVE-2005-4411

Disclosure Date: December 20, 2005 (last updated February 22, 2025)
Buffer overflow in Mercury Mail Transport System 4.01b allows remote attackers to execute arbitrary code via a long request to TCP port 105.
0
Attacker Value
Unknown

CVE-2005-4406

Disclosure Date: December 20, 2005 (last updated February 22, 2025)
SQL injection vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown

CVE-2005-4407

Disclosure Date: December 20, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) content and (2) criteria parameters.
0
Attacker Value
Unknown

CVE-2005-2028

Disclosure Date: June 21, 2005 (last updated February 22, 2025)
SQL injection vulnerability in index.php for MercuryBoard 1.1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header.
0
Attacker Value
Unknown

CVE-2005-1656

Disclosure Date: May 18, 2005 (last updated February 22, 2025)
Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20").
0