Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2641 Remote TOS IP Packet Denial Of Service vulnerability in Sun Fire/Netra
Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cause a denial of service (system controller hang) via IP Packets With Type of Service (TOS) Bits set.
network
low complexity
sun
5.0
2004-12-31 CVE-2004-2640 Remote Directory Traversal vulnerability in LinuxStat
Directory traversal vulnerability in lstat.cgi in LinuxStat before 2.3.1 allows remote attackers to read arbitrary files via (1) ..
network
low complexity
ryszard-pydo
5.0
2004-12-31 CVE-2004-2639 Remote Security vulnerability in Journalness
Unspecified vulnerability in Journalness 3.0.7 and earlier allows remote attackers to create or modify posts via unknown attack vectors.
network
low complexity
drew-withers
7.5
2004-12-31 CVE-2004-2638 Unspecified vulnerability in Oscommerce 1.5.1
The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers to access files in the "admin/" directory by modifying the in_login parameter to a non-zero value.
network
low complexity
oscommerce
7.5
2004-12-31 CVE-2004-2637 Unspecified vulnerability in Zonet Zsr1104We Wireless Router Runtime Code 2.41
The NAT implementation in Zonet ZSR1104WE Wireless Router Runtime Code Version 2.41 converts IP addresses of inbound connections to the IP address of the router, which allows remote attackers to bypass intended security restrictions.
network
low complexity
zonet
6.4
2004-12-31 CVE-2004-2636 TinyWeb 1.9 allows remote attackers to read source code of scripts via "/./" in the URL.
network
low complexity
rit-research-labs
5.0
2004-12-31 CVE-2004-2635 Information Disclosure vulnerability in Mcafee Security Installer Control System 4.0.0.81
An ActiveX control for McAfee Security Installer Control System 4.0.0.81 allows remote attackers to access the Windows registry via web pages that use the control's RegQueryValue() method.
network
low complexity
mcafee
7.5
2004-12-31 CVE-2004-2634 Console Commands Symbolic Link vulnerability in Multiple IBM AIX
The (1) bos.rte.serv_aid or (2) bos.rte.console filesets in IBM AIX 5.1 and 5.2 allow local users to overwrite arbitrary files via a symlink attack on temporary files via unknown attack vectors.
local
high complexity
ibm
6.2
2004-12-31 CVE-2004-2633 Unspecified vulnerability in Arjohn Kampman Sesame RDF Container
Unspecified vulnerability in Sesamie 1.0 allows remote anonymous attackers to gain access to repositories of other users via unknown vectors.
network
high complexity
arjohn-kampman
5.1
2004-12-31 CVE-2004-2632 Input Validation vulnerability in phpMyAdmin
phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg['Servers'] variables.
network
low complexity
phpmyadmin
7.5