Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2004-03-03 CVE-2004-0099 Unspecified vulnerability in Freebsd 5.1/5.2.1
mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system, which causes default values for other flags to be used, possibly disabling security-critical settings and allowing a local user to bypass intended access restrictions.
local
low complexity
freebsd
4.6
2004-03-03 CVE-2004-0096 Unspecified vulnerability in Apache MOD Python 2.7.9
Unknown vulnerability in mod_python 2.7.9 allows remote attackers to cause a denial of service (httpd crash) via a certain query string, a variant of CAN-2003-0973.
network
low complexity
apache
5.0
2004-03-03 CVE-2004-0089 Local Buffer Overflow vulnerability in Apple mac OS X 10.2.8/10.3.9
Buffer overflow in TruBlueEnvironment in Mac OS X 10.3.x and 10.2.x allows local users to gain privileges via a long environment variable.
local
low complexity
apple
4.6
2004-03-03 CVE-2004-0086 Unspecified vulnerability in Apple mac OS X 10.3.2
Unknown vulnerability in the Mail application for Mac OS X 10.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2004-0085.
network
low complexity
apple
5.0
2004-03-03 CVE-2004-0085 Unspecified vulnerability in Apple mac OS X 10.1.5/10.2.8
Unknown vulnerability in the Mail application for Mac OS X 10.1.5 and 10.2.8 with unknown impact, a different vulnerability than CVE-2004-0086.
network
low complexity
apple
5.0
2004-03-03 CVE-2004-0080 Unspecified vulnerability in Andries Brouwer Util-Linux
The login program in util-linux 2.11 and earlier uses a pointer after it has been freed and reallocated, which could cause login to leak sensitive data.
network
low complexity
andries-brouwer
5.0
2004-03-03 CVE-2004-0047 Privilege Escalation vulnerability in Yamamoto Hirotaka Trr19 1.0
Multiple programs in trr19 1.0 do not properly drop privileges before executing a system command, which could allow local users to gain privileges.
local
low complexity
yamamoto-hirotaka
4.6
2004-03-03 CVE-2004-0003 Privilege Escalation vulnerability in Linux Kernel R128 Device Driver
Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gain privileges, related to "R128 DRI limits checking."
local
low complexity
linux
4.6
2004-03-03 CVE-2003-0991 Remote Denial Of Service vulnerability in GNU Mailman Malformed Message
Unknown vulnerability in the mail command handler in Mailman before 2.0.14 allows remote attackers to cause a denial of service (crash) via malformed e-mail commands.
network
low complexity
gnu sgi
5.0
2004-03-03 CVE-2002-1575 Unspecified vulnerability in MIT Cgiemail 1.6
cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "required-subject," which can be used to modify the CC, BCC, and other header fields in the generated email message.
network
low complexity
mit
5.0