Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-06-14 CVE-2004-0050 Unspecified vulnerability in Verity Ultraseek
Verity Ultraseek before 5.2.2 allows remote attackers to obtain the full pathname of the document root via an MS-DOS device name in the web search option, such as (1) NUL, (2) CON, (3) AUX, (4) COM1, (5) COM2, and others.
network
low complexity
verity
5.0
2004-06-01 CVE-2004-0405 Unspecified vulnerability in CVS
CVS before 1.11 allows CVS clients to read arbitrary files via ..
network
low complexity
cvs
5.0
2004-06-01 CVE-2004-0403 Denial of Service vulnerability in KAME Racoon Malformed ISAKMP Packet
Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.
network
low complexity
kame
5.0
2004-06-01 CVE-2004-0387 Remote R3T File Stack Buffer Overflow vulnerability in RealNetworks RealOne Player/RealPlayer
Stack-based buffer overflow in the RT3 plugin, as used in RealPlayer 8, RealOne Player, RealOne Player 10 beta, and RealOne Player Enterprise, allows remote attackers to execute arbitrary code via a malformed .R3T file.
network
high complexity
realnetworks
5.1
2004-06-01 CVE-2004-0182 Unspecified vulnerability in GNU Mailman
Mailman before 2.0.13 allows remote attackers to cause a denial of service (crash) via an email message with an empty subject field.
network
low complexity
gnu
5.0
2004-06-01 CVE-2004-0179 Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.
network
high complexity
cadaver neon openoffice subversion
5.1
2004-06-01 CVE-2004-0157 Unspecified vulnerability in Xonix
x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.
local
low complexity
xonix
4.6
2004-06-01 CVE-2004-0156 Format String vulnerability in SSMTP Mail Transfer Agent
Format string vulnerabilities in the (1) die or (2) log_event functions for ssmtp before 2.50.6 allow remote mail relays to cause a denial of service and possibly execute arbitrary code.
network
low complexity
ssmtp
5.0
2004-06-01 CVE-2004-0120 Denial of Service vulnerability in Microsoft Windows 2000, Windows 2003 Server and Windows XP
The Microsoft Secure Sockets Layer (SSL) library, as used in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service via malformed SSL messages.
network
low complexity
microsoft
5.0
2004-06-01 CVE-2004-0116 Remote Denial Of Service vulnerability in Microsoft Windows 2000, Windows 2003 Server and Windows XP
An Activation function in the RPCSS Service involved with DCOM activation for Microsoft Windows 2000, XP, and 2003 allows remote attackers to cause a denial of service (memory consumption) via an activation request with a large length field.
network
low complexity
microsoft
5.0