|
345701
|
- |
|
php_heaven
|
phpmychat
|
Multiple SQL injection vulnerabilities in usersL.php3 in PHPMyChat 0.14.5 allow remote attackers to execute arbitrary SQL commands via the (1) sortBy, (2) sortOrder, (3) startReg, (4) U, (5) LastChec…
|
CWE-89
SQL Injection
|
CVE-2004-2716
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345702
|
- |
|
snitz_communications
|
snitz_forums_2000
|
Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via javascript events in the Email para…
|
CWE-79
Cross-site Scripting
|
CVE-2004-2720
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345703
|
- |
|
heiko_stamer
|
openskat
|
The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the "p" variable might not be prime, which allows remote attackers to determine the private key and decrypt mes…
|
CWE-310
Cryptographic Issues
|
CVE-2004-2721
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345704
|
- |
|
nessus
|
nessuswx
|
NessusWX 1.4.4 stores account passwords in plaintext in .session files, which allows local users to obtain passwords.
|
CWE-255
Credentials Management
|
CVE-2004-2723
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345705
|
- |
|
lionmax_software
|
chat_anywhere
|
LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) followed by a null charac…
|
CWE-287
Improper Authentication
|
CVE-2004-2724
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345706
|
- |
|
aztek_forum
|
aztek_forum
|
Multiple cross-site scripting (XSS) vulnerabilities in Aztek Forum 4.0 allow remote attackers to inject arbitrary web script or HTML via (1) the search parameter in (a) search.php, (2) the email para…
|
CWE-79
Cross-site Scripting
|
CVE-2004-2725
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345707
|
- |
|
mailenable
|
mailenable
|
Buffer overflow in MEHTTPS (HTTPMail) of MailEnable Professional 1.5 through 1.7 allows remote attackers to cause a denial of service (application crash) via a long HTTP GET request.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2004-2727
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345708
|
- |
|
hummingbird
|
connectivity
|
Buffer overflow in the FTP server of Hummingbird Connectivity 7.1 and 9.0 allows remote, authenticated users to cause a denial of service (application crash) via a long argument to the XCWD command.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2004-2728
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345709
|
- |
|
hummingbird
|
connectivity
|
Inetd32 Administration Tool of Hummingbird Connectivity 7.1 and 9.0 allows local users to execute arbitrary code by changing the program for handling incoming connections.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2004-2729
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345710
|
- |
|
microsoft
|
psexec psgetsid psinfo pskill pslist psloglist pspasswd psservice psshutdown pssuspend sysinternals_pstools
|
Sysinternals PsTools before 2.05, including (1) PsExec before 1.54, (2) PsGetsid before 1.41, (3) PsInfo before 1.61, (4) PsKill before 1.03, (5) PsList before 1.26, (6) PsLoglist before 2.51, (7) Ps…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2004-2730
|
2017-07-29 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|