|
289851
|
- |
|
mozilla
|
firefox mozilla
|
Firefox before 1.0 and Mozilla before 1.7.5 allow inactive (background) tabs to focus on input being entered in the active tab, as originally reported using form fields, which allows remote attackers…
|
NVD-CWE-Other
|
CVE-2004-1381
|
2017-10-11 10:29 |
2004-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289852
|
- |
|
php
|
php
|
PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function.
|
NVD-CWE-Other
|
CVE-2004-1392
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289853
|
- |
|
gnu
|
glibc
|
GNU glibc 2.3.4 before 2.3.4.20040619, 2.3.3 before 2.3.3.20040420, and 2.3.2 before 2.3.2-r10 does not restrict the use of LD_DEBUG for a setuid program, which allows local users to gain sensitive i…
|
NVD-CWE-Other
|
CVE-2004-1453
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289854
|
- |
|
full_revolution
|
aspwebcalendar
|
SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp.
|
NVD-CWE-Other
|
CVE-2004-1552
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289855
|
- |
|
fullrevolution
|
aspwebalbum
|
SQL injection vulnerability in aspWebAlbum allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the cat parameter to album.asp. NOTE: it wa…
|
CWE-89
SQL Injection
|
CVE-2004-1553
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289856
|
- |
|
mozilla sgi redhat
|
mozilla propack enterprise_linux enterprise_linux_desktop fedora_core linux linux_advanced_workstation
|
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG…
|
NVD-CWE-Other
|
CVE-2004-1613
|
2017-10-11 10:29 |
2004-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289857
|
- |
|
hp
|
hp-ux
|
Buffer overflow in CDE libDtSvc on HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows local users to gain root privileges via unknown vectors.
|
NVD-CWE-Other
|
CVE-2004-1764
|
2017-10-11 10:29 |
2004-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289858
|
- |
|
gnu
|
sharutils
|
Stack-based buffer overflow in shar in GNU sharutils 4.2.1 allows local users to execute arbitrary code via a long -o command line argument.
|
NVD-CWE-Other
|
CVE-2004-1772
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289859
|
- |
|
gnu
|
sharutils
|
Multiple buffer overflows in sharutils 4.2.1 and earlier may allow attackers to execute arbitrary code via (1) long output from wc to shar, or (2) unknown vectors in unshar.
|
NVD-CWE-Other
|
CVE-2004-1773
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289860
|
- |
|
beasts
|
vsftpd
|
vsftpd before 1.2.2, when under heavy load, allows attackers to cause a denial of service (crash) via a SIGCHLD signal during a malloc or free call, which is not re-entrant.
|
NVD-CWE-Other
|
CVE-2004-2259
|
2017-10-11 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|