Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-1448 Remote Server-Side Script Execution vulnerability in Jetbox ONE CMS 2.0.8
Jetbox One 2.0.8 and possibly other versions allow remote attackers with Author privileges in the IMAGES module to upload PHP files and execute arbitrary code.
local
low complexity
jetbox
4.6
2004-12-31 CVE-2004-1447 Unspecified vulnerability in Jetbox ONE CMS 2.0.8
Jetbox One 2.0.8 and possibly other versions stores passwords in the database in plaintext, which could allow attackers to gain sensitive information.
network
low complexity
jetbox
5.0
2004-12-31 CVE-2004-1446 Denial Of Service vulnerability in Juniper Networks NetScreen SSHv1
Unknown vulnerability in ScreenOS in Juniper Networks NetScreen firewall 3.x through 5.x allows remote attackers to cause a denial of service (device reboot or hang) via a crafted SSH v1 packet.
network
low complexity
juniper
5.0
2004-12-31 CVE-2004-1444 Path Traversal vulnerability in Roundup-Tracker Roundup
Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via ..
network
low complexity
roundup-tracker CWE-22
5.0
2004-12-31 CVE-2004-1443 HTML Injection vulnerability in Horde IMP HTML+TIME
Cross-site scripting (XSS) vulnerability in the inline MIME viewer in Horde-IMP (Internet Messaging Program) 3.2.4 and earlier, when used with Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via an e-mail message.
network
horde
4.3
2004-12-31 CVE-2004-1442 Cross-Site Scripting vulnerability in IBM Net.Data 7.0/7.2
Cross-site scripting (XSS) vulnerability in db2www CGI interpreter in IBM Net.Data 7 and 7.2 allows remote attackers to inject arbitrary web script or HTML via a macro filename, which is not properly handled by error messages such as "DTWP001E."
network
ibm
4.3
2004-12-31 CVE-2004-1435 Multiple vulnerability in Cisco ONS
Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earlier versions, allows remote attackers to cause a denial of service (control card reset) via a large number of TCP connections with an invalid response instead of the final ACK (TCP-ACK).
network
low complexity
cisco
5.0
2004-12-31 CVE-2004-1434 Multiple vulnerability in Cisco ONS
Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.1(0) to 4.1(2), 4.5(x), 4.0(0) to 4.0(2), and earlier versions, allows remote attackers to cause a denial of service (control card reset) via malformed SNMP packets.
network
low complexity
cisco
5.0
2004-12-31 CVE-2004-1433 Multiple vulnerability in Cisco ONS
Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earlier versions, and ONS 15600 1.x(x), allows remote attackers to cause a denial of service (control card reset) via malformed (1) TCP and (2) UDP packets.
network
low complexity
cisco
5.0
2004-12-31 CVE-2004-1432 Multiple vulnerability in Cisco ONS
Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earlier versions, allows remote attackers to cause a denial of service (control card reset) via malformed (1) IP or (2) ICMP packets.
network
low complexity
cisco
5.0