Show filters
79 Total Results
Displaying 51-60 of 79
Sort by:
Attacker Value
Unknown
CVE-2006-5961
Disclosure Date: November 17, 2006 (last updated October 04, 2023)
Buffer overflow in Mercury Mail Transport System 4.01b for Windows has unknown impact and attack vectors, as originally reported in a GLEG VulnDisco pack. NOTE: the provenance of this information is unknown; the details are obtained from third party information. The original researcher is reliable.
0
Attacker Value
Unknown
CVE-2006-5134
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
Mercury SiteScope 8.2 (8.1.2.0) allows remote authenticated users to cause a denial of service (loss of connectivity to the classic interface) via attempted HTML injection into the "new monitor description" field.
0
Attacker Value
Unknown
CVE-2006-5122
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Mercury SiteScope 8.2 (8.1.2.0) allow remote authenticated users to inject arbitrary web script or HTML via (1) "any field create name field" except "create new group name" or (2) any description field.
0
Attacker Value
Unknown
CVE-2006-3669
Disclosure Date: July 18, 2006 (last updated October 04, 2023)
Mercury Messenger, possibly 1.7.1.1 and other versions, when running on a multi-user Mac OS X platform, stores chat logs with world-readable permissions within the /Users directory, which allows local users to read the chat logs from other users.
0
Attacker Value
Unknown
CVE-2006-1255
Disclosure Date: March 19, 2006 (last updated February 22, 2025)
Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long string to the (1) LOGIN or (2) SELECT command, a different set of attack vectors and possibly a different vulnerability than CVE-2003-1177.
0
Attacker Value
Unknown
CVE-2005-4411
Disclosure Date: December 20, 2005 (last updated February 22, 2025)
Buffer overflow in Mercury Mail Transport System 4.01b allows remote attackers to execute arbitrary code via a long request to TCP port 105.
0
Attacker Value
Unknown
CVE-2005-4406
Disclosure Date: December 20, 2005 (last updated February 22, 2025)
SQL injection vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown
CVE-2005-4407
Disclosure Date: December 20, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) content and (2) criteria parameters.
0
Attacker Value
Unknown
CVE-2005-2028
Disclosure Date: June 21, 2005 (last updated February 22, 2025)
SQL injection vulnerability in index.php for MercuryBoard 1.1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header.
0
Attacker Value
Unknown
CVE-2005-1656
Disclosure Date: May 18, 2005 (last updated February 22, 2025)
Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20").
0