2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1158——Konqueror 3.x up to 3.2.2-6, and possibly other versions, allows remote attackers to spoof arbitrary web sites by inject...
CVE-2004-1014——statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial...
CVE-2004-1105——Nortel Networks Contivity VPN Client displays a different error message depending on whether the username is valid or in...
CVE-2004-1016——The scm_send function in the scm layer for Linux kernel 2.4.x up to 2.4.28, and 2.6.x up to 2.6.9, allows local users to...
CVE-2004-1153——Format string vulnerability in Adobe Acrobat Reader 6.0.0 through 6.0.2 allows remote attackers to cause a denial of ser...
CVE-2004-1159——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-1122, CVE-2004-1314. Reason: this was an out-o...
CVE-2004-1106——Cross-site scripting (XSS) vulnerability in Gallery 1.4.4-pl3 and earlier allows remote attackers to execute arbitrary w...
CVE-2004-0571——Microsoft Word for Windows 6.0 Converter does not properly validate certain data lengths, which allows remote attackers ...
CVE-2004-1113——SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 allows remote attackers to execute arbit...
CVE-2004-1114——Buffer overflow in the handling of command line arguments in Skype 1.0.x.94 through 1.0.x.98 allows remote attackers to ...
CVE-2004-1160——Netscape 7.x to 7.2, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting cont...
CVE-2004-1172——Stack-based buffer overflow in the Agent Browser in Veritas Backup Exec 8.x before 8.60.3878 Hotfix 68, and 9.x before 9...
CVE-2004-1147——phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to...
CVE-2004-1028——Untrusted execution path vulnerability in chcod on AIX IBM 5.1.0, 5.2.0, and 5.3.0 allows local users to execute arbitra...
CVE-2004-1138——VIM before 6.3 and gVim before 6.3 allow local users to execute arbitrary commands via a file containing a crafted model...
CVE-2004-1148——phpMyAdmin before 2.6.1, when configured with UploadDir functionality, allows remote attackers to read arbitrary files v...
CVE-2004-1137——Multiple vulnerabilities in the IGMP functionality for Linux kernel 2.4.22 to 2.4.28, and 2.6.x to 2.6.9, allow local an...
CVE-2004-1149——Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions ...
CVE-2004-1025——Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, ...
CVE-2004-1101——mailpost.exe in MailPost 5.1.1sv, and possibly earlier versions, allows remote attackers to cause a denial of service (s...
CVE-2004-1026——Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several windo...
CVE-2004-1100——Cross-site scripting (XSS) vulnerability in mailpost.exe in MailPost 5.1.1sv, and possibly earlier versions, when debug ...
CVE-2004-1136——Buffer overflow in CuteFTP Professional 6.0, and possibly other versions, allows remote FTP servers to cause a denial of...
CVE-2004-1151——Multiple buffer overflows in the (1) sys32_ni_syscall and (2) sys32_vm86_warning functions in sys_ia32.c for Linux 2.6.x...
CVE-2004-1130——Cross-site scripting (XSS) vulnerability in admin.asp in CMailServer 5.2 allows remote attackers to execute arbitrary we...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now