|
304271
|
- |
|
bea
|
weblogic_server
|
The remove method in a stateful Enterprise JavaBean (EJB) in BEA WebLogic Server and WebLogic Express version 8.1 through SP2, 7.0 through SP4, and 6.1 through SP6, does not properly check EJB permis…
|
NVD-CWE-Other
|
CVE-2004-0713
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304272
|
- |
|
bea
|
weblogic_server
|
The WebLogic Authentication provider for BEA WebLogic Server and WebLogic Express 8.1 through SP2 and 7.0 through SP4 does not properly clear member relationships when a group is deleted, which can c…
|
NVD-CWE-Other
|
CVE-2004-0715
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304273
|
- |
|
apple
|
safari
|
Safari 1.2.2 does not properly prevent a frame in one domain from injecting content into a frame that belongs to another domain, which facilitates web site spoofing and other attacks, aka the frame i…
|
NVD-CWE-Other
|
CVE-2004-0720
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304274
|
- |
|
microsoft
|
java_virtual_machine
|
Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets from different domains via the "GET/Key" and "PUT/K…
|
NVD-CWE-Other
|
CVE-2004-0723
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304275
|
- |
|
valve_software
|
half-life half-life_dedicated_server
|
The Half-Life engine before July 7 2004 allows remote attackers to cause a denial of service (server or client crash) via an empty fragmented packet.
|
NVD-CWE-Other
|
CVE-2004-0724
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304276
|
- |
|
microsoft
|
systems_management_server
|
The Remote Control Client service in Microsoft's Systems Management Server (SMS) 2.50.2726.0 allows remote attackers to cause a denial of service (crash) via a data packet to TCP port 2702 that cause…
|
NVD-CWE-Other
|
CVE-2004-0728
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304277
|
- |
|
phpbb_group
|
phpbb
|
PhpBB 2.0.8 allows remote attackers to gain sensitive information via an invalid (1) category_rows parameter to index.php, (2) faq parameter to faq.php, or (3) ranksrow parameter to profile.php, whic…
|
NVD-CWE-Other
|
CVE-2004-0729
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304278
|
- |
|
phpbb_group
|
phpbb
|
Multiple cross-site scripting (XSS) vulnerabilities in PhpBB 2.0.8 allow remote attackers to inject arbitrary web script or HTML via (1) the cat_title parameter in index.php, (2) the faq[0][0] parame…
|
NVD-CWE-Other
|
CVE-2004-0730
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304279
|
- |
|
francisco_burzi
|
php-nuke
|
Cross-site scripting (XSS) vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to inject arbitrary script as other users via the input field.
|
NVD-CWE-Other
|
CVE-2004-0731
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304280
|
- |
|
francisco_burzi
|
php-nuke
|
SQL injection vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to execute arbitrary SQL statements via the instory parameter.
|
NVD-CWE-Other
|
CVE-2004-0732
|
2017-07-11 10:30 |
2004-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|