2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0010——Stack-based buffer overflow in the ncp_lookup function for ncpfs in Linux kernel 2.4.x allows local users to gain privil...
CVE-2004-0103——crawl before 4.0.0 beta23 does not properly "apply a size check" when copying a certain environment variable, which may ...
CVE-2004-0099——mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system, which causes d...
CVE-2004-0128——PHP remote file inclusion vulnerability in the GEDCOM configuration script for phpGedView 2.65.1 and earlier allows remo...
CVE-2004-0127——Directory traversal vulnerability in editconfig_gedcom.php for phpGedView 2.65.1 and earlier allows remote attackers to ...
CVE-2004-0003——Unknown vulnerability in Linux kernel before 2.4.22 allows local users to gain privileges, related to "R128 DRI limits c...
CVE-2004-0039——Multiple format string vulnerabilities in HTTP Application Intelligence (AI) component in Check Point Firewall-1 NG-AI R...
CVE-2004-0040——Stack-based buffer overflow in Check Point VPN-1 Server 4.1 through 4.1 SP6 and Check Point SecuRemote/SecureClient 4.1 ...
CVE-2004-0115——VirtualPC_Services in Microsoft Virtual PC for Mac 6.0 through 6.1 allows local attackers to truncate and overwrite arbi...
CVE-2004-0114——The shmat system call in the System V Shared Memory interface for FreeBSD 5.2 and earlier, NetBSD 1.3 and earlier, and O...
CVE-2004-0077——The do_mremap function for the mremap system call in Linux 2.2 to 2.2.25, 2.4 to 2.4.24, and 2.6 to 2.6.2, does not prop...
CVE-2004-0106——Multiple unknown vulnerabilities in XFree86 4.1.0 to 4.3.0, related to improper handling of font files, a different set ...
CVE-2004-0105——Multiple buffer overflows in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code.
CVE-2004-0104——Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code.
CVE-2004-0944——The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 generates easily pr...
CVE-2004-1360——Unknown vulnerability in conv_fix in Sun Solaris 7 through 9, when invoked by conv_lpd, allows local users to overwrite ...
CVE-2004-0324——Confirm 0.62 and earlier could allow remote attackers to execute arbitrary code via an e-mail header that contains shell...
CVE-2004-0322——Multiple cross-site scripting (XSS) vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to execute arbitrary scr...
CVE-2004-0466——WebConnect 6.5, 6.4.4, and possibly earlier versions allows remote attackers to cause a denial of service (hang) via a U...
CVE-2004-2136——dm-crypt on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV com...
CVE-2004-0074——Multiple buffer overflows in xsok 1.02 allows local users to gain privileges via (1) a long LANG environment variable, o...
CVE-2004-0072——Directory traversal vulnerability in Accipiter Direct Server 6.0 allows remote attackers to read arbitrary files via enc...
CVE-2004-0066——phpGedView before 2.65 allows remote attackers to obtain the absolute path of the web server via malformed parameters to...
CVE-2004-0071——Directory traversal vulnerability in buildManPage in class.manpagelookup.php for PHP Man Page Lookup 1.2.0 allows remote...
CVE-2004-0070——PHP remote file inclusion vulnerability in module.php for ezContents allows remote attackers to execute arbitrary PHP co...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now