Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2194 Remote Denial Of Service vulnerability in MailEnable
MailEnable Professional Edition before 1.53 and Enterprise Edition before 1.02 allows remote attackers to cause a denial of service (crash) via malformed (1) SMTP or (2) IMAP commands.
network
low complexity
mailenable
5.0
2004-12-31 CVE-2004-2193 Cross-Site Scripting vulnerability in Cjoverkill 4.0.3
Cross-site scripting (XSS) vulnerability in trade.php for CJOverkill 4.0.3 allows remote attackers to inject arbitrary web script or HTML via the (1) tms[0] or (2) url parameters.
network
cjoverkill
4.3
2004-12-31 CVE-2004-2192 Input Validation vulnerability in Turbotraffictrader PHP 1.0
SQL injection vulnerability in tttadmin/settings.php in Turbo Traffic Trader PHP 1.0 allows remote attackers to execute arbitrary SQL commands via the ttt_admin parameter.
network
low complexity
turbotraffictrader
7.5
2004-12-31 CVE-2004-2191 Input Validation vulnerability in Turbotraffictrader PHP 1.0
Cross-site scripting (XSS) vulnerability in ttt-webmaster.php in Turbo Traffic Trader PHP 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) msg[0] or (2) siteurl parameters.
4.3
2004-12-31 CVE-2004-2190 Directory Traversal vulnerability in Unzoo 4.42
Directory traversal vulnerability in Unzoo 4.4-2 has unknown impact and attack vectors.
network
low complexity
unzoo
5.0
2004-12-31 CVE-2004-2189 Cross-Site Scripting And SQL Injection vulnerability in DMXReady Site Chassis Manager
SQL injection vulnerability in DMXReady Site Chassis Manager allows remote attackers to execute arbitrary SQL commands via unknown vectors.
network
low complexity
dmxready
7.5
2004-12-31 CVE-2004-2188 Cross-Site Scripting And SQL Injection vulnerability in DMXReady Site Chassis Manager
Cross-site scripting (XSS) vulnerability in DMXReady Site Chassis Manager allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
network
dmxready
4.3
2004-12-31 CVE-2004-2187 Remote Input Validation vulnerability in Mediawiki 1.3.5
Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors.
network
low complexity
mediawiki
5.0
2004-12-31 CVE-2004-2186 Remote Input Validation vulnerability in Mediawiki 1.3.5
SQL injection vulnerability in MediaWiki 1.3.5 allows remote attackers to execute arbitrary SQL commands via SpecialMaintenance.
network
low complexity
mediawiki
7.5
2004-12-31 CVE-2004-2185 Remote Input Validation vulnerability in Mediawiki 1.3.5
Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow remote attackers to execute arbitrary scripts and/or SQL queries via (1) the UnicodeConverter extension, (2) raw page views, (3) SpecialIpblocklist, (4) SpecialEmailuser, (5) SpecialMaintenance, and (6) ImagePage.
network
mediawiki
6.8