Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2004-06-01 CVE-2004-0407 Denial Of Service vulnerability in Macromedia Coldfusion 6.1
The HTML form upload capability in ColdFusion MX 6.1 does not reclaim disk space if an upload is interrupted, which allows remote attackers to cause a denial of service (disk consumption) by repeatedly uploading files and interrupting the uploads before they finish.
network
high complexity
macromedia
2.6
2004-06-01 CVE-2004-0388 Unspecified vulnerability in Oracle Mysql 5.0.33
The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack.
local
low complexity
oracle
2.1
2004-06-01 CVE-2004-0181 Unspecified vulnerability in Linux Kernel 2.4.0
The JFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the JFS file system, which allows local users to obtain sensitive information by reading the raw device.
local
low complexity
linux
2.1
2004-06-01 CVE-2004-0180 Unspecified vulnerability in CVS
The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.
network
high complexity
cvs
2.6
2004-06-01 CVE-2004-0133 Unspecified vulnerability in Linux Kernel 2.4.0
The XFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the XFS file system, which allows local users to obtain sensitive information by reading the raw device.
local
low complexity
linux
2.1
2004-06-01 CVE-2004-0124 Unspecified vulnerability in Microsoft products
The DCOM RPC interface for Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause network communications via an "alter context" call that contains additional data, aka the "Object Identity Vulnerability."
network
high complexity
microsoft
2.6
2004-05-26 CVE-2004-2135 Information Disclosure vulnerability in Linux Kernel Cryptoloop
cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.
local
low complexity
linux
2.1
2004-05-04 CVE-2004-0381 mysqlbug in MySQL allows local users to overwrite arbitrary files via a symlink attack on the failed-mysql-bugreport temporary file.
local
low complexity
mysql oracle
2.1
2004-05-04 CVE-2004-0370 Local Memory Disclosure vulnerability in Freebsd 5.2
The setsockopt call in the KAME Project IPv6 implementation, as used in FreeBSD 5.2, does not properly handle certain IPv6 socket options, which could allow attackers to read kernel memory and cause a system panic.
local
low complexity
freebsd
2.1
2004-05-04 CVE-2003-0618 Information Disclosure vulnerability in Suidperl
Multiple vulnerabilities in suidperl 5.6.1 and earlier allow a local user to obtain sensitive information about files for which the user does not have appropriate permissions.
local
low complexity
perl debian
2.1