Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-02-03 CVE-2005-0226 Remote Format String vulnerability in Ngircd 0.8.2
Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.
network
low complexity
ngircd
7.5
2005-02-02 CVE-2005-0152 Unspecified vulnerability in Squirrelmail 1.2.6
PHP remote file inclusion vulnerability in Squirrelmail 1.2.6 allows remote attackers to execute arbitrary code via "URL manipulation."
network
low complexity
squirrelmail
7.5
2005-02-01 CVE-2005-0101 Remote Buffer Overflow vulnerability in Newspost
Buffer overflow in the socket_getline function in Newspost 2.1.1 and earlier allows remote malicious NNTP servers to execute arbitrary code via a long string without a newline character.
network
low complexity
newspost
7.5
2005-01-31 CVE-2005-0224 Denial-Of-Service vulnerability in HP Virtualvault 4.5/4.6/4.7
Unknown vulnerability in HP-UX B.11.04 running Virtualvault 4.5 through 4.7, when running the TGA daemon, allows remote attackers to cause a denial of service via certain network traffic.
network
low complexity
hp
5.0
2005-01-29 CVE-2005-0104 Unspecified vulnerability in Squirrelmail
Cross-site scripting (XSS) vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to inject arbitrary web script or HTML via certain integer variables.
network
squirrelmail
4.3
2005-01-29 CVE-2005-0075 Unspecified vulnerability in Squirrelmail
prefs.php in SquirrelMail before 1.4.4, with register_globals enabled, allows remote attackers to inject local code into the SquirrelMail code via custom preference handlers.
network
low complexity
squirrelmail
5.0
2005-01-28 CVE-2005-0320 Remote vulnerability in Icewarp web Mail 5.3
Multiple cross-site scripting vulnerabilities in MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to login.html, (2) accountid parameter to accountsettings_add.html, or the (3) note, (4) title, and (5) location fields to calendar.html.
network
low complexity
icewarp
5.0
2005-01-28 CVE-2005-0319 Remote vulnerability in Alt-N Webadmin 3.0.3
Direct remote injection vulnerability in modalfram.wdm in Alt-N WebAdmin 3.0.4 allows remote attackers to load external webpages that appear to come from the WebAdmin server, which allows remote attackers to inject arbitrary HTML or web script to facilitate cross-site scripting (XSS) and phishing attacks.
network
alt-n
4.3
2005-01-28 CVE-2005-0318 Remote vulnerability in Alt-N Webadmin 3.0.2
useredit_account.wdm in Alt-N WebAdmin 3.0.4 does not properly validate account edits by the logged in user, which allows remote authenticated users to edit other users' account information via a modified user parameter.
local
low complexity
alt-n
2.1
2005-01-28 CVE-2005-0317 Remote vulnerability in Alt-N Webadmin 3.0.2
Cross-site scripting (XSS) vulnerability in useredit_account.wdm in Alt-N WebAdmin 3.0.4 allows remote attackers to inject arbitrary web script or HTML via the user parameter.
network
alt-n
4.3