Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0350 Remote Security vulnerability in F-Secure Anti-Virus
Heap-based buffer overflow in multiple F-Secure Anti-Virus and Internet Security products allows remote attackers to execute arbitrary code via a crafted ARJ archive.
network
low complexity
f-secure
7.5
2005-05-02 CVE-2005-0349 Unspecified vulnerability in Broadcom Brightstor Arcserve Backup 11.1
The production release of the UniversalAgent for UNIX in BrightStor ARCserve Backup 11.1 contains hard-coded credentials, which allows remote attackers to access the file system and possibly execute arbitrary commands.
network
low complexity
broadcom
7.5
2005-05-02 CVE-2005-0348 Remote vulnerability in RealNetworks RealArcade
Directory traversal vulnerability in RealArcade 1.2.0.994 allows remote attackers to delete arbitrary files via an RGP file with a ..
network
high complexity
realnetworks
2.6
2005-05-02 CVE-2005-0347 Remote Security vulnerability in RealArcade
Integer overflow in RealArcade 1.2.0.994 and earlier allows remote attackers to execute arbitrary code via an RGS file with an invalid size string for the GUID and game name, which leads to a buffer overflow.
network
high complexity
realnetworks
5.1
2005-05-02 CVE-2005-0346 Information Disclosure vulnerability in Softremote Vpn Client
SafeNet SoftRemote VPN Client stores the VPN password (pre-shared key) in cleartext in memory of the IreIKE.exe process, which allows local users to gain sensitive information if they have access to that process.
local
low complexity
safenet
2.1
2005-05-02 CVE-2005-0345 Unspecified vulnerability in PHP Fusion PHP Fusion 4.0
viewthread.php in php-fusion 4.x does not check the (1) forum_id or (2) forum_cat parameters, which allows remote attackers to view protected forums via the thread_id parameter.
network
low complexity
php-fusion
5.0
2005-05-02 CVE-2005-0344 Directory Traversal vulnerability in Software602 602Lan Suite 2004.0.04.1221
Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute arbitrary files via a ..
network
low complexity
software602
5.0
2005-05-02 CVE-2005-0343 SQL Injection vulnerability in Logicnow Perldesk 1.0
SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter.
network
low complexity
logicnow
7.5
2005-05-02 CVE-2005-0342 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
local
low complexity
apple
2.1
2005-05-02 CVE-2005-0341 Cross-Site Scripting vulnerability in Apple Safari 1.2.4
Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks.
network
apple
4.3