|
304591
|
- |
|
epic_games
|
unreal_engine
|
Format string vulnerability in games using the Epic Games Unreal Engine 436 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifie…
|
NVD-CWE-Other
|
CVE-2004-1805
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304592
|
- |
|
dogpatch_software
|
cfwebstore
|
SQL injection vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to execute SQL commands via the (1) category_id, (2) product_id, or (3) feature_id parameters.
|
NVD-CWE-Other
|
CVE-2004-1806
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304593
|
- |
|
dogpatch_software
|
cfwebstore
|
Cross-site scripting (XSS) vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to inject arbitrary web script or HTML via the URL.
|
NVD-CWE-Other
|
CVE-2004-1807
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304594
|
- |
|
metamail_corporation
|
metamail
|
Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack.
|
NVD-CWE-Other
|
CVE-2004-1808
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304595
|
- |
|
phpbb_group
|
phpbb
|
Cross-site scripting (XSS) vulnerability in phpBB 2.0.6d and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) postdays parameter to viewtopic.php or (2) topicdays pa…
|
NVD-CWE-Other
|
CVE-2004-1809
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304596
|
- |
|
hp
|
ssl_http_server
|
The SSL HTTP Server in HP Web-enabled Management Software 5.0 through 5.92, with anonymous access enabled, allows remote attackers to compromise the trusted certificates by uploading their own certif…
|
NVD-CWE-Other
|
CVE-2004-1811
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304597
|
- |
|
vocaltec
|
vgw4_8_telephony_gateway
|
VocalTec VGW4/8 Gateway 8.0 allows remote attackers to bypass authentication via an HTTP request to home.asp with a trailing slash (/).
|
NVD-CWE-Other
|
CVE-2004-1813
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304598
|
- |
|
vocaltec
|
vgw4_8_telephony_gateway
|
Directory traversal vulnerability in VocalTec VGW4/8 Gateway 8.0 allows remote attackers to read protected files via .. (dot dot) sequences in an HTTP request, as demonstrated using home.asp.
|
NVD-CWE-Other
|
CVE-2004-1814
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304599
|
- |
|
macromedia sun
|
coldfusion jrun one_application_server
|
Unknown vulnerability in ColdFusion MX 6.0 and 6.1, and JRun 4.0, when a SOAP web service expects an array of objects as an argument, allows remote attackers to cause a denial of service (memory cons…
|
NVD-CWE-Other
|
CVE-2004-1815
|
2017-07-11 10:31 |
2004-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304600
|
- |
|
-
|
-
|
Unknown vulnerability in Sun Java System Application Server 7.0 Update 2 and earlier, when a SOAP web service expects an array of objects as an argument, allows remote attackers to cause a denial of …
|
NVD-CWE-Other
|
CVE-2004-1816
|
2017-07-11 10:31 |
2004-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|