Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2004-11-23 CVE-2004-0351 Multiple vulnerability in Spidersales 2.0
Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data.
local
low complexity
spidersales
2.1
2004-11-23 CVE-2004-0350 Multiple vulnerability in Spidersales 2.0
SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring.
local
low complexity
spidersales
2.1
2004-11-23 CVE-2004-0341 Unspecified vulnerability in Texas Imperial Software Wftpd
WFTPD Pro Server 3.21 Release 1 allocates memory for a command until a 0Ah byte (newline) is sent, which allows local users to cause a denial of service (CPU consumption) by continuing to send a long command that does not contain a newline.
local
low complexity
texas-imperial-software
2.1
2004-11-23 CVE-2004-0320 Unspecified vulnerability in Ncipher Nshield
Unknown vulnerability in nCipher Hardware Security Modules (HSM) 1.67.x through 1.99.x allows local users to access secrets stored in the module's run-time memory via certain sequences of commands.
local
low complexity
ncipher
2.1
2004-11-23 CVE-2004-0299 Remote Denial Of Service vulnerability in Smallftpd 1.0.3
Buffer overflow in smallftpd 0.99 allows local users to cause a denial of service (crash) via an FTP request with a large number of "/" (slash) characters.
local
low complexity
smallftpd
2.1
2004-11-23 CVE-2004-0289 Local Buffer Overflow vulnerability in Paul L Daniels Signaturedb 0.1.1
Buffer overflow in sdbscan in SignatureDB 0.1.1 allows local users to cause a denial of service (segmentation fault) via a database file that contains a large key parameter.
local
low complexity
paul-l-daniels
2.1
2004-11-23 CVE-2004-0283 Unspecified vulnerability in Mailmgr 1.2.3
Mailmgr 1.2.3 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/mailmgr.unsort, (2) /tmp/mailmgr.tmp, or (3) /tmp/mailmgr.sort.
local
low complexity
mailmgr
2.1
2004-11-23 CVE-2004-0256 Local Insecure Temporary Directory Creation vulnerability in GNU LibTool
GNU libtool before 1.5.2, during compile time, allows local users to overwrite arbitrary files via a symlink attack on libtool directories in /tmp.
local
low complexity
gnu
2.1
2004-11-16 CVE-2004-1331 Unspecified vulnerability in Microsoft IE and Internet Explorer
The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Security Warning" dialog and save arbitrary files with arbitrary extensions via the SaveAs command.
network
high complexity
microsoft
2.6
2004-11-03 CVE-2004-0959 Unspecified vulnerability in PHP
rfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP script with a certain MIME header that causes the "$_FILES" array to be modified.
local
low complexity
php
2.1