Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-07-19 CVE-2005-2313 Local Information Disclosure vulnerability in Check Point SecuRemote NG
Check Point SecuRemote NG with Application Intelligence R54 allows attackers to obtain credentials and gain privileges via unknown attack vectors.
local
low complexity
checkpoint
7.2
2005-07-19 CVE-2005-2312 Unspecified vulnerability in Realnode Emilda
management.php in Realnode Emilda 1.2.2 and earlier allows remote attackers to perform actions as other users by modifying the user_id parameter.
network
low complexity
realnode
7.5
2005-07-19 CVE-2005-2311 Local Security vulnerability in SMS
SMS 1.9.2m and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) request1 or (2) request2 temporary files.
local
low complexity
sms
2.1
2005-07-19 CVE-2005-2310 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Nullsoft Winamp
Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arbitrary code via an MP3 file with a long ID3v2 tag such as (1) ARTIST or (2) TITLE.
network
nullsoft CWE-119
critical
9.3
2005-07-19 CVE-2005-2309 Resource Exhaustion vulnerability in Opera Browser 8.01
Opera 8.01 allows remote attackers to cause a denial of service (CPU consumption) via a crafted JPEG image, as demonstrated using random.jpg.
network
low complexity
opera CWE-400
5.0
2005-07-19 CVE-2005-2308 Denial Of Service vulnerability in Microsoft IE 6.0
The JPEG decoder in Microsoft Internet Explorer allows remote attackers to cause a denial of service (CPU consumption or crash) and possibly execute arbitrary code via certain crafted JPEG images, as demonstrated using (1) mov_fencepost.jpg, (2) cmp_fencepost.jpg, (3) oom_dos.jpg, or (4) random.jpg.
network
low complexity
microsoft
7.5
2005-07-19 CVE-2005-2307 Local Denial of Service vulnerability in Microsoft Windows 2000 and Windows XP
netman.dll in Microsoft Windows Connections Manager Library allows local users to cause a denial of service (Network Connections Service crash) via a large integer argument to a particular function, aka "Network Connection Manager Vulnerability."
network
low complexity
microsoft
5.0
2005-07-19 CVE-2005-2306 Local Security vulnerability in Macromedia Coldfusion and Jrun
Race condition in Macromedia JRun 4.0, ColdFusion MX 6.1 and 7.0, when under heavy load, causes JRun to assign a duplicate authentication token to multiple sessions, which could allow authenticated users to gain privileges as other users.
local
high complexity
macromedia
3.7
2005-07-19 CVE-2005-2305 Remote Denial of Service vulnerability in DG Remote Control Server 1.6.2
DG Remote Control Server 1.6.2 allows remote attackers to cause a denial of service (crash or CPU consumption) and possibly execute arbitrary code via a long message to TCP port 1071 or 1073, possibly due to a buffer overflow.
network
low complexity
dg
7.5
2005-07-19 CVE-2005-2304 Unspecified vulnerability in Microsoft Internet Explorer and Live Messenger
Microsoft MSN Messenger 9.0 and Internet Explorer 6.0 allows remote attackers to cause a denial of service (crash) via an image with an ICC Profile with a large Tag Count.
network
low complexity
microsoft
5.0