|
348251
|
- |
|
esignal
|
esignal
|
Stack-based buffer overflow in WinSig.exe in eSignal 7.5 and 7.6 allows remote attackers to execute arbitrary code via a long STREAMQUOTE tag.
|
NVD-CWE-Other
|
CVE-2004-1868
|
2017-07-11 10:31 |
2004-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348252
|
- |
|
nival_interactive
|
etherlords etherlords_ii
|
Etherlords I 1.07 and earlier and Etherlords II 1.03 and earlier allows remote attackers to cause a denial of service (crash) by sending a packet that specifies the size for the next packet, then sen…
|
NVD-CWE-Other
|
CVE-2004-1869
|
2017-07-11 10:31 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348253
|
- |
|
photopost
|
photopost_php_pro
|
Multiple SQL injection vulnerabilities in PhotoPost PHP Pro 4.6.x and earlier allow remote attackers to gain users' passwords via the (1) photo parameter to addfav.php, (2) photo parameter to comment…
|
NVD-CWE-Other
|
CVE-2004-1870
|
2017-07-11 10:31 |
2004-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348254
|
- |
|
photopost
|
photopost_php_pro
|
Multiple cross-site scripting (XSS) vulnerabilities in PhotoPost PHP Pro 4.6.x and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) ppuser, (2) password, (3) stype, (…
|
NVD-CWE-Other
|
CVE-2004-1871
|
2017-07-11 10:31 |
2004-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348255
|
- |
|
webct
|
webct
|
Cross-site scripting (XSS) vulnerability in WebCT Campus Edition 4.1.1.5 allows remote attackers to inject arbitrary web script or HTML via the @import URL function in a CSS style tag.
|
NVD-CWE-Other
|
CVE-2004-1872
|
2017-07-11 10:31 |
2004-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348256
|
- |
|
alan_ward
|
a-cart
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user info…
|
NVD-CWE-Other
|
CVE-2004-1874
|
2017-07-11 10:31 |
2004-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348257
|
- |
|
cpanel
|
cpanel
|
Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0-R85 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to testfile.html, (2) file parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2004-1875
|
2017-07-11 10:31 |
2004-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348258
|
- |
|
clam_anti-virus
|
clamav
|
The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute arbitrary commands via shell metacharacters in a file name.
|
NVD-CWE-Other
|
CVE-2004-1876
|
2017-07-11 10:31 |
2004-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348259
|
- |
|
oracle
|
application_server http_server
|
The p_submit_url value in the sample login form in the Oracle 9i Application Server (9iAS) Single Sign-on Administrators Guide, Release 2(9.0.2) for Oracle SSO allows remote attackers to spoof the lo…
|
NVD-CWE-Other
|
CVE-2004-1877
|
2017-07-11 10:31 |
2004-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348260
|
- |
|
linbit_technologies
|
linbox_officeserver
|
LINBOX LIN:BOX allows remote attackers to bypass authentication, obtain sensitive information, or gain access via a direct request to admin/user.pl preceded by // (double leading slash).
|
NVD-CWE-Other
|
CVE-2004-1878
|
2017-07-11 10:31 |
2004-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|