Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0345 Unspecified vulnerability in PHP Fusion PHP Fusion 4.0
viewthread.php in php-fusion 4.x does not check the (1) forum_id or (2) forum_cat parameters, which allows remote attackers to view protected forums via the thread_id parameter.
network
low complexity
php-fusion
5.0
2005-05-02 CVE-2005-0344 Directory Traversal vulnerability in Software602 602Lan Suite 2004.0.04.1221
Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute arbitrary files via a ..
network
low complexity
software602
5.0
2005-05-02 CVE-2005-0343 SQL Injection vulnerability in Logicnow Perldesk 1.0
SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter.
network
low complexity
logicnow
7.5
2005-05-02 CVE-2005-0342 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
local
low complexity
apple
2.1
2005-05-02 CVE-2005-0341 Cross-Site Scripting vulnerability in Apple Safari 1.2.4
Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks.
network
apple
4.3
2005-05-02 CVE-2005-0340 Remote Integer Overflow vulnerability in Apple Mac OS X AppleFileServer
Integer signedness error in Apple File Service (AFP Server) allows remote attackers to cause a denial of service (application crash) via a negative UAM string length in a FPLoginExt packet.
network
low complexity
apple
5.0
2005-05-02 CVE-2005-0339 Remote Buffer Overflow vulnerability in Foxmail Email Server 2.0
Buffer overflow in Foxmail 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long MAIL FROM command.
network
low complexity
foxmail
critical
10.0
2005-05-02 CVE-2005-0338 Remote Buffer Overflow vulnerability in Savant Webserver 3.1
Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request.
network
low complexity
savant
7.5
2005-05-02 CVE-2005-0337 Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.
network
low complexity
wietse-venema redhat suse
7.5
2005-05-02 CVE-2005-0336 Multiple vulnerability in Emotion Mediapartner web Server 5.0
Cross-site scripting (XSS) vulnerability in EMotion MediaPartner Web Server 5.0 allows remote attackers to inject arbitrary HTML or web script, as demonstrated using a URL containing ..
network
emotion
4.3