Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1106 Denial-Of-Service vulnerability in Apple Quicktime Pictureviewer 6.5.2
PictureViewer in QuickTime for Windows 6.5.2 allows remote attackers to cause a denial of service (application crash) via a GIF image with the maximum depth start value, possibly triggering an integer overflow.
network
low complexity
apple
5.0
2005-05-02 CVE-2005-1105 Unspecified vulnerability in SUN Javamail 1.3.2
Directory traversal vulnerability in the MimeBodyPart.getFileName method in JavaMail 1.3.2 allows remote attackers to write arbitrary files via a ..
network
low complexity
sun
5.0
2005-05-02 CVE-2005-1104 Unspecified vulnerability in Centra 7
Multiple cross-site scripting (XSS) vulnerabilities in Centra 7 allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) first name, or (3) last name fields.
network
centra
4.3
2005-05-02 CVE-2005-1102 Cross-Site Scripting vulnerability in WordPress
Multiple cross-site scripting (XSS) vulnerabilities in template-functions-post.php in WordPress 1.5 and earlier allow remote attackers to execute arbitrary commands via the (1) content or (2) title of the post.
network
wordpress
6.8
2005-05-02 CVE-2005-1101 Unspecified vulnerability in IBM Lotus Domino Server 6.0.5/6.5.4
Multiple buffer overflows in Lotus Domino Server 6.0.5 and 6.5.4 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via large amounts of data in certain (1) time or (2) date fields.
network
low complexity
ibm
7.5
2005-05-02 CVE-2005-1100 Unspecified vulnerability in Salim Gasmi GLD 1.3/1.4
Format string vulnerability in the ErrorLog function in cnf.c in Greylisting daemon (GLD) 1.3 and 1.4 allows remote attackers to execute arbitrary code via format string specifiers in data that is passed directly to syslog.
network
low complexity
salim-gasmi
7.5
2005-05-02 CVE-2005-1098 Information Disclosure vulnerability in Runtime Software Getdataback for Ntfs 2.31
GetDataBack for NTFS 2.31 stores the username and license key in plaintext in the Name value in the License registry key, which may allow local users to obtain sensitive information.
local
low complexity
runtime-software
2.1
2005-05-02 CVE-2005-1097 Local Security vulnerability in Rebrand P2P Share SPY 2.2
Rebrand P2P Share Spy 2.2 stores the user password in plaintext in the txtPassword value in the registry, which allows local users to gain privileges.
local
low complexity
rebrand
4.6
2005-05-02 CVE-2005-1095 Cross-Site Scripting vulnerability in Ocean12 Membership Manager Pro
Cross-site scripting (XSS) vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to inject arbitrary web script or HTML via the page parameter.
4.3
2005-05-02 CVE-2005-1093 Remote Buffer Overflow vulnerability in Popup Plus Plugin Popup Plus Plugin for Miranda IM 2.0.3.8
Buffer overflow in the PopUp Plus 2.0.3.8 plugin for Miranda IM, with "Use SmileyAdd Setting" enabled, allows remote attackers to execute arbitrary code.
network
low complexity
popup-plus-plugin
7.5