Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-08-25 CVE-2004-0819 Denial-Of-Service vulnerability in OpenBSD
The bridge functionality in OpenBSD 3.4 and 3.5, when running a gateway configured as a bridging firewall with the link2 option for IPSec enabled, allows remote attackers to cause a denial of service (crash) via an ICMP echo (ping) packet.
network
low complexity
openbsd
5.0
2004-08-24 CVE-2004-1745 Remote Buffer Overflow vulnerability in People CAN FLY Painkiller 1.3.1
Buffer overflow in Painkiller 1.3.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long password.
network
low complexity
people-can-fly
5.0
2004-08-24 CVE-2004-1744 Remote Denial Of Service vulnerability in Easy File Sharing Web Server 1.2/1.25
Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to cause a denial of service (CPU consumption or crash) via many large HTTP requests.
network
low complexity
efs-software
5.0
2004-08-24 CVE-2004-1743 Unspecified vulnerability in EFS Software EFS web Server 1.2/1.25
Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to view arbitrary files via an HTTP request for the disk_c virtual folder.
network
low complexity
efs-software
5.0
2004-08-24 CVE-2004-1742 Directory Traversal vulnerability in Web-App.Org Webapp 0.9.9
Directory traversal vulnerability in WebAPP 0.9.9 allows remote attackers to view arbitrary files via a ..
network
low complexity
web-app-org
5.0
2004-08-24 CVE-2004-0800 Local Command Line Format String vulnerability in Sun DtMail
Format string vulnerability in CDE Mailer (dtmail) on Solaris 8 and 9 allows local users to gain privileges via format strings in the argv[0] value.
local
low complexity
avaya sun
4.6
2004-08-23 CVE-2004-1741 Unspecified vulnerability in Music Daemon Music Daemon 0.1/0.2/0.3
Music daemon (musicd) 0.0.3 and earlier allows remote attackers to cause a denial of service (crash) by calling LOAD with a binary file as an argument, then calling SHOWLIST.
network
low complexity
music-daemon
5.0
2004-08-23 CVE-2004-1740 Unspecified vulnerability in Music Daemon Music Daemon 0.1/0.2/0.3
Music daemon (musicd) 0.0.3 and earlier allows remote attackers to read arbitrary files by calling LOAD with a full pathname, then calling SHOWLIST.
network
low complexity
music-daemon
5.0
2004-08-23 CVE-2004-1739 Remote Denial Of Service vulnerability in Bird Chat Internet Chat Server 1.61
Bird Chat 1.61 allows remote attackers to cause a denial of service (crash) via invalid users.
network
low complexity
bird-chat
5.0
2004-08-21 CVE-2004-1735 HTML Injection vulnerability in Sympa New List
Cross-site scripting (XSS) vulnerability in the create list option in Sympa 4.1.x and earlier allows remote authenticated users to inject arbitrary web script or HTML via the description field.
network
sympa
4.3