|
304151
|
- |
|
gallery_project debian
|
gallery debian_linux
|
Gallery 1.4.3 and earlier allows remote attackers to bypass authentication and obtain Gallery administrator privileges.
|
NVD-CWE-Other
|
CVE-2004-0522
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304152
|
- |
|
-
|
-
|
Buffer overflow in the chpasswd command in the Change_passwd plugin before 4.0, as used in SquirrelMail, allows local users to gain root privileges via a long user name.
|
NVD-CWE-Other
|
CVE-2004-0524
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304153
|
- |
|
kde
|
konqueror
|
KDE Konqueror 2.1.1 and 2.2.2 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image …
|
NVD-CWE-Other
|
CVE-2004-0527
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304154
|
- |
|
netscape
|
navigator
|
Netscape Navigator 7.1 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map who…
|
NVD-CWE-Other
|
CVE-2004-0528
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304155
|
- |
|
cluecentral
|
suexec.patch
|
The modified suexec program in cPanel, when configured for mod_php and compiled for Apache 1.3.31 and earlier without mod_phpsuexec, allows local users to execute untrusted shared scripts and gain pr…
|
NVD-CWE-Other
|
CVE-2004-0529
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304156
|
- |
|
-
|
-
|
The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the PHP user by inserting…
|
NVD-CWE-Other
|
CVE-2004-0530
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304157
|
- |
|
businessobjects
|
infoview webintelligence
|
Business Objects WebIntelligence 2.7.0 through 2.7.4 only enforces access controls on the client, which allows remote authenticated users to delete arbitrary files on the server via a crafted delete …
|
NVD-CWE-Other
|
CVE-2004-0533
|
2017-07-11 10:30 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304158
|
- |
|
businessobjects
|
infoview webintelligence
|
Cross-site scripting (XSS) vulnerability in Business Objects InfoView 5.1.4 through 5.1.8 for WebIntelligence 2.7.0 through 2.7.4 allows remote attackers to inject arbitrary web script or HTML via do…
|
NVD-CWE-Other
|
CVE-2004-0534
|
2017-07-11 10:30 |
2004-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304159
|
- |
|
tripwire
|
tripwire
|
Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file na…
|
NVD-CWE-Other
|
CVE-2004-0536
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304160
|
- |
|
oracle
|
applications e-business_suite
|
Multiple SQL injection vulnerabilities in Oracle Applications 11.0 and Oracle E-Business Suite 11.5.1 through 11.5.8 allow remote attackers to execute arbitrary SQL procedures and queries.
|
NVD-CWE-Other
|
CVE-2004-0543
|
2017-07-11 10:30 |
2004-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|