|
279931
|
- |
|
aborior
|
encore_web_forum
|
display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file variable.
|
NVD-CWE-Other
|
CVE-2004-1888
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279932
|
- |
|
-
|
-
|
SQL injection vulnerability in the Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to execute arbitrary SQL via the (1) orderby or (2) sid parameters to modules.php.
|
NVD-CWE-Other
|
CVE-2004-2000
|
2018-10-20 00:30 |
2004-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279933
|
- |
|
zen_cart
|
zen_cart
|
SQL injection vulnerability in login.php in Zen Cart 1.1.2d, 1.1.4 before patch 1, and possibly other versions allows remote attackers to execute arbitrary SQL via the (1) admin_name or (2) admin_pas…
|
NVD-CWE-Other
|
CVE-2004-2023
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279934
|
- |
|
openbsd
|
openssh
|
sshd.c in OpenSSH 3.6.1p2 and 3.7.1p2 and possibly other versions, when using privilege separation, does not properly signal the non-privileged process when a session has been terminated after exceed…
|
NVD-CWE-Other
|
CVE-2004-2069
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279935
|
- |
|
oracle
|
application_server
|
Oracle toplink mapping workBench uses a weak encryption algorithm for passwords, which allows local users to decrypt the passwords.
|
NVD-CWE-Other
|
CVE-2004-2134
|
2018-10-20 00:30 |
2004-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279936
|
- |
|
ip3_networks
|
ip3_netaccess ip3_netaccess_-_hospitality ip3_netaccess_-_wireless_hotspots
|
SQL injection vulnerability in IP3 Networks NetAccess Appliance before firmware 3.1.18b13 allows remote attackers to bypass authentication via the (1) login or (2) password. NOTE: this issue was lat…
|
NVD-CWE-Other
|
CVE-2004-2326
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279937
|
- |
|
ca ibm jetty
|
unicenter_web_services_distributed_management trading_partner_interchange jetty_http_server
|
Unspecified vulnerability in Jetty HTTP Server, as used in (1) IBM Trading Partner Interchange before 4.2.4, (2) CA Unicenter Web Services Distributed Management (WSDM) before 3.11, and possibly othe…
|
NVD-CWE-noinfo
|
CVE-2004-2478
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279938
|
- |
|
qwikmail
|
qwikmail_smtp
|
Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to execute arbitrary code via format specifiers in the (1) clientRcptTo array, and th…
|
NVD-CWE-Other
|
CVE-2004-2677
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279939
|
- |
|
anteco_visual_technologies
|
ownserver
|
Directory traversal vulnerability in Anteco Visual Technologies OwnServer 1.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.
|
CWE-22
Path Traversal
|
CVE-2004-2745
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279940
|
- |
|
pensacola_web_designs
|
xtremeasp_photogallery
|
SQL injection vulnerability in adminlogin.asp in XTREME ASP Photo Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
|
CWE-89
SQL Injection
|
CVE-2004-2746
|
2018-10-20 00:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|