Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2004-12-20 CVE-2004-1326 Local Buffer Overflow vulnerability in Ultrix DXTerm Setup Parameter
Buffer overflow in dxterm in Ultrix 4.5 allows local users to execute arbitrary code via a long -setup parameter.
local
low complexity
ultrix
7.2
2004-12-20 CVE-2004-0852 Unspecified vulnerability in Htget 0.93
Buffer overflow in htget 0.93 allows remote attackers to execute arbitrary code via a crafted URL.
network
low complexity
htget
7.5
2004-12-18 CVE-2004-1374 Local Security vulnerability in Netbsd 2.0.4
Multiple buffer overflows in NetBSD kernel may allow local users to execute arbitrary code and gain privileges.
local
low complexity
netbsd
7.2
2004-12-15 CVE-2004-1322 Unspecified vulnerability in Cisco Unity Server
Cisco Unity 2.x, 3.x, and 4.x, when integrated with Microsoft Exchange, has several hard coded usernames and passwords, which allows remote attackers to gain unauthorized access and change configuration settings or read outgoing or incoming e-mail messages.
network
low complexity
cisco
7.5
2004-12-15 CVE-2004-1321 Remote Security vulnerability in Asante Fm2008 Managed Ethernet Switch 1.6
The configuration backup in Asante FM2008 running firmware 1.06 stores the username and password in cleartext, which could allow remote attackers to gain unauthorized access.
network
low complexity
asante
7.5
2004-12-15 CVE-2004-1320 Unspecified vulnerability in Asante Fm2008 Managed Ethernet Switch 1.6
Asante FM2008 running firmware 1.06 is shipped with a default username and password, which could allow remote attackers to gain unauthorized access.
network
low complexity
asante
7.5
2004-12-06 CVE-2004-0625 SQL Injection vulnerability in Websoft Infinity web 1.0
SQL injection vulnerability in Infinity WEB 1.0 allows remote attackers to bypass authentication and gain privileges via the login page.
network
low complexity
websoft
7.5
2004-12-06 CVE-2004-0624 Unspecified vulnerability in Artmedic Webdesign Artmedic Links 5.0
PHP remote file inclusion vulnerability in index.php for Artmedic links 5.0 (artmedic_links5) allows remote attackers to execute arbitrary PHP code by modifying the id parameter to reference a URL on a remote web server that contains the code.
network
low complexity
artmedic-webdesign
7.5
2004-12-06 CVE-2004-0619 Integer Overflow vulnerability in Linux Kernel Broadcom 5820 Cryptonet Driver
Integer overflow in the ubsec_keysetup function for Linux Broadcom 5820 cryptonet driver allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a negative add_dsa_buf_bytes variable, which leads to a buffer overflow.
local
low complexity
redhat
7.2
2004-12-06 CVE-2004-0613 Remote Command Execution vulnerability in Osticket STS 1.2
osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP request that uploads a PHP file to the ticket attachments directory.
network
low complexity
osticket
7.5