|
303501
|
- |
|
oracle redhat bsd_mailx_project heirloom
|
linux enterprise_linux bsd_mailx mailx
|
The expand function in fio.c in Heirloom mailx 12.5 and earlier and BSD mailx 8.1.2 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in an email address.
|
CWE-20
Improper Input Validation
|
CVE-2004-2771
|
2024-11-21 08:54 |
2014-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303502
|
- |
|
cerberusftp
|
ftp_server
|
Cerberus FTP Server before 4.0.3.0 allows remote authenticated users to list hidden files, even when the "Display hidden files" option is enabled, via the (1) MLSD or (2) MLST commands.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2004-2769
|
2024-11-21 08:54 |
2010-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303503
|
- |
|
tsugio_okamoto
|
lha
|
Buffer overflow in LHA 1.14 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to "command line processing," a di…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2004-0694
|
2024-11-21 08:49 |
2011-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303504
|
6.1 |
MEDIUM
Network
|
ibm
|
iss_blackice_pc_protection
|
A vulnerability was found in ISS BlackICE PC Protection. It has been rated as problematic. Affected by this issue is the Update Handler. The manipulation with an unknown input leads to cross site scr…
|
CWE-79
Cross-site Scripting
|
CVE-2003-5003
|
2024-11-21 08:47 |
2022-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303505
|
5.3 |
MEDIUM
Network
|
ibm
|
iss_blackice_pc_protection
|
A vulnerability was found in ISS BlackICE PC Protection. It has been declared as problematic. Affected by this vulnerability is the component Update Handler which allows cleartext transmission of dat…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2003-5002
|
2024-11-21 08:47 |
2022-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303506
|
9.8 |
CRITICAL
Network
|
ibm
|
iss_blackice_pc_protection
|
A vulnerability was found in ISS BlackICE PC Protection and classified as critical. Affected by this issue is the component Cross Site Scripting Detection. The manipulation as part of POST/PUT/DELETE…
|
NVD-CWE-noinfo
|
CVE-2003-5001
|
2024-11-21 08:47 |
2022-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303507
|
7.5 |
HIGH
Network
|
haxx
|
curl
|
curl 7.x before 7.10.7 sends CONNECT proxy credentials to the remote server.
|
CWE-255
Credentials Management
|
CVE-2003-1605
|
2024-11-21 08:47 |
2018-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303508
|
7.5 |
HIGH
Network
|
linux
|
linux_kernel
|
The redirect_target function in net/ipv4/netfilter/ipt_REDIRECT.c in the Linux kernel before 2.6.0 allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by sending …
|
NVD-CWE-Other
|
CVE-2003-1604
|
2024-11-21 08:47 |
2016-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303509
|
- |
|
gehealthcare
|
discovery_vh
|
GE Healthcare Discovery VH has a default password of (1) interfile for the ftpclient user of the Interfile server or (2) "2" for the LOCAL user of the FTP server for the Codonics printer, which has u…
|
CWE-255
Credentials Management
|
CVE-2003-1603
|
2024-11-21 08:47 |
2015-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303510
|
- |
|
wordpress
|
wordpress
|
PHP remote file inclusion vulnerability in wp-links/links.all.php in WordPress 0.70 allows remote attackers to execute arbitrary PHP code via a URL in the $abspath variable.
|
CWE-94
Code Injection
|
CVE-2003-1599
|
2024-11-21 08:47 |
2014-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|