Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0588 Remote vulnerability in Mozilla Suite
Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.
network
low complexity
mozilla
5.0
2005-05-02 CVE-2005-0583 Unspecified vulnerability in Broadcom License Software 0.1.0.15
Directory traversal vulnerability in Computer Associates (CA) License Client 0.1.0.15 allows remote attackers to create arbitrary files via ..
network
low complexity
broadcom
5.0
2005-05-02 CVE-2005-0581 Unspecified vulnerability in Broadcom License Software 0.1.0.15
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.
local
low complexity
broadcom
4.6
2005-05-02 CVE-2005-0577 Remote Security vulnerability in mkbold-mkitalic
Format string vulnerability in DNA MKBold-MKItalic 0.06_1 and earlier allows remote attackers to execute arbitrary code via crafted BDF font files.
network
high complexity
dna
5.1
2005-05-02 CVE-2005-0574 Remote Directory Traversal vulnerability in Cupidsystems CIS Webserver 3.5.13
Directory traversal vulnerability in CIS WebServer 3.5.13 allows remote attackers to read arbitrary files via ..
network
low complexity
cupidsystems
5.0
2005-05-02 CVE-2005-0573 Denial-Of-Service vulnerability in ROB Flynn Gaim 1.1.3
Gaim 1.1.3 on Windows systems allows remote attackers to cause a denial of service (client crash) via a file transfer in which the filename contains "(" or ")" (parenthesis) characters.
network
low complexity
rob-flynn
5.0
2005-05-02 CVE-2005-0571 Remote Security vulnerability in Punbb 1.2.1
admin_loader.php in PunBB 1.2.1 allows remote attackers to read arbitrary files via the plugin parameter.
network
low complexity
punbb
5.0
2005-05-02 CVE-2005-0570 Remote Input Validation vulnerability in Punbb 1.2.1
profile.php in PunBB 1.2.1 allows remote attackers to cause a denial of service (account lockout) by setting the user's password to NULL.
network
low complexity
punbb
5.0
2005-05-02 CVE-2005-0568 Remote Denial Of Service vulnerability in Raven Software Soldier Of Fortune 2
Soldier of Fortune II 1.03 gold allows remote attackers to cause a denial of service (application crash) via a large cl_guid value, which results in an invalid pointer dereference.
network
low complexity
raven-software
5.0
2005-05-02 CVE-2005-0558 Unspecified vulnerability in Microsoft Word 2000/2002/2003
Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute arbitrary code via a crafted document.
network
high complexity
microsoft
5.1