Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2229 Multiple Unspecified vulnerability in Oracle9i Lite
Multiple unknown vulnerabilities in Oracle 9i Lite Mobile Server 5.0.0.0.0 through 5.0.2.9.0 allow remote authenticated users to gain privileges.
local
low complexity
oracle
4.6
2004-12-31 CVE-2004-2227 Remote Security vulnerability in Firefox
Mozilla Firefox before 1.0 truncates long filenames in the file download dialog box, which makes it easier for remote attackers to trick users into downloading files with dangerous extensions.
network
low complexity
mozilla
5.0
2004-12-31 CVE-2004-2226 Remote Security vulnerability in Mozilla Thunderbird 0.8/1.7.1/1.7.3
Mozilla Mail 1.7.1 and 1.7.3, and Thunderbird before 0.9, when HTML-Mails is enabled, allows remote attackers to determine valid e-mail addresses via an HTML e-mail that references a Cascading Style Sheets (CSS) document on the attacker's server.
network
low complexity
mozilla
5.0
2004-12-31 CVE-2004-2225 Unspecified vulnerability in Mozilla Firefox
Mozilla Firefox before 0.10.1 allows remote attackers to delete arbitrary files in the download directory via a crafted data: URI that is not properly handled when the user clicks the Save button.
network
low complexity
mozilla
5.0
2004-12-31 CVE-2004-2224 Denial-Of-Service vulnerability in Appfoundry Message Foundry 2.75.0003
Appfoundry Message Foundry 2.75 .0003 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that contains MS-DOS device names such as com1.
network
low complexity
appfoundry
5.0
2004-12-31 CVE-2004-2223 Input Validation vulnerability in FsPHPGallery
FsPHPGallery before 1.2 allows remote attackers to cause a denial of service via an image with a large size attribute, which causes a crash when the server attempts to resize the image.
network
low complexity
fsphpgallery
5.0
2004-12-31 CVE-2004-2220 Unspecified vulnerability in F-Secure Anti-Virus 6.30/6.30Sr1/6.31
F-Secure Anti-Virus for Microsoft Exchange 6.30 and 6.31 does not properly detect certain password-protected files in a ZIP file, which allows remote attackers to bypass anti-virus protection.
network
low complexity
f-secure
5.0
2004-12-31 CVE-2004-2217 Remote Denial Of Service vulnerability in yChat
Multiple unknown vulnerabilities in yhttpd in yChat before 0.7 allow remote attackers to cause a denial of service (segmentation fault) via unknown vectors.
network
low complexity
ychat
5.0
2004-12-31 CVE-2004-2216 Remote Denial Of Service vulnerability in SUN products
Unknown vulnerability in Sun Java System Web Server 6.0 SP7 and earlier and 6.1 SP1 and earlier, and Application Server 7 Update 4 and earlier, allows remote attackers to cause a denial of service (crash) via a malformed client certificate.
network
low complexity
sun
5.0
2004-12-31 CVE-2004-2215 Unspecified vulnerability in Marc Lehmann Rxvt-Unicode 3.4/3.5
RXVT-Unicode 3.4 and 3.5 does not properly close file descriptors, which allows local users to access the terminals of other users and possibly gain privileges.
local
low complexity
marc-lehmann
4.6