Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2004-08-06 CVE-2004-0530 The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the PHP user by inserting shared libraries into the appropriate path.
local
low complexity
slackware
7.2
2004-08-06 CVE-2004-0529 Unspecified vulnerability in Cluecentral Suexec.Patch
The modified suexec program in cPanel, when configured for mod_php and compiled for Apache 1.3.31 and earlier without mod_phpsuexec, allows local users to execute untrusted shared scripts and gain privileges, as demonstrated using untainted scripts such as (1) proftpdvhosts or (2) addalink.cgi, a different vulnerability than CVE-2004-0490.
local
low complexity
cluecentral
7.2
2004-08-06 CVE-2004-0495 Device Driver vulnerability in Linux Kernel
Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool.
local
low complexity
avaya gentoo linux redhat suse conectiva
7.2
2004-08-06 CVE-2004-0453 Unspecified vulnerability in Vice 1.13/1.14/1.6
Format string vulnerability in the monitor "memory dump" command in VICE 1.6 to 1.14 allows local users to cause a denial of service (emulator crash) and possibly execute arbitrary code via format string specifiers in an output string.
local
low complexity
vice
7.2
2004-08-06 CVE-2004-0447 Local Denial of Service vulnerability in Linux Kernel
Unknown vulnerability in Linux before 2.4.26 for IA64 allows local users to cause a denial of service, with unknown impact.
local
low complexity
linux
7.2
2004-08-06 CVE-2004-0213 Missing Authentication for Critical Function vulnerability in Microsoft Windows 2000
Utility Manager in Windows 2000 launches winhlp32.exe while Utility Manager is running with raised privileges, which allows local users to gain system privileges via a "Shatter" style attack that sends a Windows message to cause Utility Manager to launch winhlp32 by directly accessing the context sensitive help and bypassing the GUI, then sending another message to winhlp32 in order to open a user-selected file, a different vulnerability than CVE-2003-0908.
local
low complexity
microsoft CWE-306
7.8
2004-08-06 CVE-2004-0210 Classic Buffer Overflow vulnerability in Microsoft Interix, Windows 2000 and Windows NT
The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.
local
low complexity
microsoft CWE-120
7.8
2004-08-06 CVE-2004-0205 Remote Buffer Overflow vulnerability in Microsoft IIS 4 Redirect
Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.
local
low complexity
avaya microsoft
7.2
2004-08-06 CVE-2004-0204 Directory Traversal vulnerability in Business Objects Crystal Reports Web Form Viewer
Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2003 with Business Contact Manager, Microsoft Business Solutions CRM 1.2, and other products, allows remote attackers to read and delete arbitrary files via ".." sequences in the dynamicimag argument to crystalimagehandler.aspx.
7.5
2004-08-06 CVE-2004-0135 Unspecified vulnerability in SGI Irix
The syssgi SGI_IOPROBE system call in IRIX 6.5.20 through 6.5.24 allows local users to gain privileges by reading and writing to kernel memory.
local
low complexity
sgi
7.2