Show filters
536 Total Results
Displaying 521-530 of 536
Sort by:
Attacker Value
Unknown
CVE-2005-2898
Disclosure Date: September 14, 2005 (last updated February 22, 2025)
NOTE: this issue has been disputed by the vendor. FileZilla 2.2.14b and 2.2.15, and possibly earlier versions, when "Use secure mode" is disabled, uses a weak encryption scheme to store the user's password in the configuration settings file, which allows local users to obtain sensitive information. NOTE: the vendor has disputed the issue, stating that "the problem is not a vulnerability at all, but in fact a fundamental issue of every single program that can store passwords transparently.
0
Attacker Value
Unknown
CVE-2005-2616
Disclosure Date: August 17, 2005 (last updated February 22, 2025)
Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path parameter to (1) initialize.php, (2) customize.php, (3) form.php, or (4) index.php.
0
Attacker Value
Unknown
CVE-2005-2547
Disclosure Date: August 12, 2005 (last updated February 22, 2025)
security.c in hcid for BlueZ 2.16, 2.17, and 2.18 allows remote attackers to execute arbitrary commands via shell metacharacters in the Bluetooth device name when invoking the PIN helper.
0
Attacker Value
Unknown
CVE-2005-0850
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
FileZilla FTP server before 0.9.6 allows remote attackers to cause a denial of service via a request for a filename containing an MS-DOS device name such as CON, NUL, COM1, LPT1, and others.
0
Attacker Value
Unknown
CVE-2005-0851
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
FileZilla FTP server before 0.9.6, when using MODE Z (zlib compression), allows remote attackers to cause a denial of service (infinite loop) via certain file uploads or directory listings.
0
Attacker Value
Unknown
CVE-2004-2356
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Early termination vulnerability in Fizmez Web Server 1.0 allows remote attackers to cause a denial of service (crash) by connecting to the server and then disconnecting without sending any data, which triggers a null pointer dereference.
0
Attacker Value
Unknown
CVE-2004-2349
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Tunez before 1.20-pre2 allow remote attackers to execute arbitrary SQL queries.
0
Attacker Value
Unknown
CVE-2004-0319
Disclosure Date: November 23, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in the font tag in ezBoard 7.3u allows remote attackers to execute arbitrary script as other users, as demonstrated using the background:url in a (1) font color or (2) font face argument.
0
Attacker Value
Unknown
CVE-2003-1339
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Stack-based buffer overflow in eZnet.exe, as used in eZ (a) eZphotoshare, (b) eZmeeting, (c) eZnetwork, and (d) eZshare allows remote attackers to cause a denial of service (crash) or execute arbitrary code, as demonstrated via (1) a long GET request and (2) a long operation or autologin parameter to SwEzModule.dll.
0
Attacker Value
Unknown
CVE-2003-0510
Disclosure Date: August 07, 2003 (last updated February 22, 2025)
Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sessions" command.
0