Skip to main content

Severity archive

Critical severity CVEs

Critical

43,402 critical severity CVEs — 43,402 Critical, 124,867 High, 163,363 Medium, 17,956 Low, 2,045 Unrated across the current result set.

CVE-2004-1310

Published Jan 10, 2005

Stack-based buffer overflow in the asf_mmst_streaming.c functionality for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a large MMST stream packet.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1311

Published Jan 10, 2005

Integer overflow in the real_setup_and_get_header function in real.c for Unix MPlayer 1.0pre5 allows remote attackers to cause a denial of service (application crash) and possibly…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1312

Published Jan 3, 2005

A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service via certain strings,…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-0090

Published Dec 31, 2004

Unknown vulnerability in Windows File Sharing for Mac OS X 10.1.5 through 10.3.2 does not "shutdown properly," which has unknown impact and attack vectors.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-0429

Published Dec 31, 2004

Unknown vulnerability related to "the handling of large requests" in RAdmin for Apple Mac OS X 10.3.3 and Mac OS X 10.2.8 may allow attackers to have unknown impact via unknown at…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-0985

Published Dec 31, 2004

Internet Explorer 6.x on Windows XP SP2 allows remote attackers to execute arbitrary code, as demonstrated using a document with a draggable file type such as .xml, .doc, .py, .cd…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1017

Published Dec 31, 2004

Multiple "overflows" in the io_edgeport driver for Linux kernel 2.4.x have unknown impact and unknown attack vectors.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1236

Published Dec 31, 2004

Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers to execute arbitrary code.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1390

Published Dec 31, 2004

Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1) -F, (2) name, (3) en, (4) ups…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1402

Published Dec 31, 2004

SQL injection vulnerability in iWebNegar allows remote attackers to execute arbitrary SQL commands via (1) the string parameter for index.php, (2) comments.php, or (3) the adminis…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1441

Published Dec 31, 2004

Cross-site scripting (XSS) vulnerability in icq.cgi in Board Power 2.04PF allows remote attackers to inject arbitrary web script or HTML via the action parameter.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1463

Published Dec 31, 2004

Unknown vulnerability in the PageEditor in MoinMoin 1.2.2 and earlier, related to Access Control Lists (ACL), has unknown impact.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1483

Published Dec 31, 2004

Multiple unknown vulnerabilities in the ActiveX and HTML file browsers in Symantec Clientless VPN Gateway 4400 Series 5.0 have unknown attack vectors and unknown impact.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1486

Published Dec 31, 2004

Unknown vulnerability in Serviceguard A.11.13 through A.11.16.00 and Cluster Object Manager A.01.03 and B.01.04 through B.03.00.01 on HP-UX, Serviceguard A.11.14.04 and A.11.15.04…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1763

Published Dec 31, 2004

Buffer overflow in hsrun.exe for HAHTsite Scenario Server 5.1 Patch 06 (build 91) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1812

Published Dec 31, 2004

Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attackers to execute arbitrary code.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1898

Published Dec 31, 2004

Stack-based buffer overflow in the administration interface in Monit 1.4 through 4.2 allows remote attackers to execute arbitrary code via a long username.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-1903

Published Dec 31, 2004

Buffer overflow in blaxxun 3D 7.0 allows remote attackers to execute arbitrary code via a long URL property inside an object tag.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-2114

Published Dec 31, 2004

Stack-based and heap-based buffer overflows in ProxyNow! 2.75 and earlier allow remote attackers to execute arbitrary code via a GET request with a long ftp:// URL.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-2142

Published Dec 31, 2004

Unknown vulnerability in the remote tape support (remote.c) in the RMT client for Jorg Schilling sdd 1.28 and 1.31 has unknown impact and attack vectors.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-2154

Published Dec 31, 2004

CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowerc…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 42,401-42,425 of 43,402 CVEsPage 1697 of 1737