 |
|
|
|
| Solaris dtmail format string bug | | Published: |  | 25.08.2004 | | Source: |  | FULL-DISCLOSURE | | SecurityVulns ID: |  | 3930 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | format string bug in argv[0] allows privilege escalation to gid group. |
| Hafiye terminal characters injection | | Published: |  | 25.08.2004 | | Source: |  | AKPOLAT | | SecurityVulns ID: |  | 3931 | | Type: |  | client | | Level: |  | 4/10 | | Description: |  | It's possible to inject terminal ESC sequences. |
| Bird Chat DoS | | Published: |  | 25.08.2004 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3933 | | Type: |  | client | | Level: |  | 5/10 |
CGI bugs updated since 17.08.2004 | | Published: |  | 25.08.2004 | | Source: |  | | | SecurityVulns ID: |  | 3914 | | Type: |  | remote | | Level: |  | 5/10 |
| Original document |  | Jason Munro, Hastymail security update (25.08.2004) |
| |  | Jérôme ATHIAS, WebAPP directory traversal and ability to retrieve the DES encrypted password hash (25.08.2004) |
| |  | Noticias, WebArtFactory CMS Vulnerability (25.08.2004) |
| |  | Jose Antonio, Bugs fixed in Version 1.4.3 (25.08.2004) |
| |  | Jose Antonio, Multiple Cross Site Scripting Vulnerabilities in eGroupWare (25.08.2004) |
| |  | Dr`Ponidi Haryanto, JShop Input Validation Hole in 'page.php' Permits Cross-Site Scripting Attacks (25.08.2004) |
| |  | Jose Antonio, Multiple vulnerabilities in MyDMS (22.08.2004) |
| |  | Jose Antonio, Mantis Bugtracker Remote PHP Code Execution Vulnerability (22.08.2004) |
| |  | Jose Antonio, Cross Site Scripting Vulnerability in Sympa (22.08.2004) |
| |  | Audun Larsen, Cross-Site Scripting (XSS) in Nihuo Web Log Analyzer (22.08.2004) |
| |  | SECURITEAM, [UNIX] PlaySMS SQL Injection via Cookie (19.08.2004) |
| |  | SECURITEAM, [UNIX] YaPiG add_comment.php PHP Code Injection (19.08.2004) |
| |  | Criolabs, Vulnerabilities in Merak Webmail Server. (19.08.2004) |
| |  | ahmad muammar, Multiple vulnerabilities in PHP-FUSION (19.08.2004) |
| |  | Abu Lafy, Cross-Site Scripting (XSS) in Php-Nuke 7.1.0 (19.08.2004) |
| |  | Fernando Quintero, SQL Injection in CACTI (17.08.2004) |
| |  | Matias Neiff, Posible security bug in phpMyWebhosting (17.08.2004) |
| |  | Cyrille Barthelemy, QuiXplorer directory traversal (17.08.2004) |
| MusicDaemon unauthorized access | | Published: |  | 25.08.2004 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3935 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | It's possible to obtain any file remotely. |
| imwheel symbolic links problem | | Published: |  | 25.08.2004 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3936 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | PID file is created in /tmp directory |
| icecast crossite scripting | | Published: |  | 25.08.2004 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3938 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | Crossite scripting in User-Agent. |
Netscape NSS libraries buffer overflow updated since 25.08.2004 | | Published: |  | 30.08.2004 | | Source: |  | X-FORCE | | SecurityVulns ID: |  | 3932 | | Type: |  | library | | Level: |  | 9/10 | | Description: |  | Buffer overflow during SSL negotiation. |
Multiple Axis products unauthorized access updated since 25.08.2004 | | Published: |  | 11.09.2004 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3934 | | Type: |  | remote | | Level: |  | 6/10 | | Description: |  | It's possible to obtain or change administrative account anonymously. |
multiple browsers cookie spoofing updated since 25.08.2004 | | Published: |  | 17.09.2004 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3939 | | Type: |  | library | | Level: |  | 4/10 | | Description: |  | It's possible to spoof cookies for few 3rd level domains. |
Internet Explorer drag-n-drop vulnerability updated since 25.08.2004 | | Published: |  | 04.07.2007 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 3937 | | Type: |  | client | | Level: |  | 6/10 | | Description: |  | By using javaasript in conjunction with shell:startup it's possible to place executable into startup folder if user drags an object on the page or scrolls the page. |
|
|
|
|
|
|
|
|