2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1136Buffer overflow in CuteFTP Professional 6.0, and possibly other versions, allows remote FTP servers to cause a denial of...
CVE-2004-1220Battlefield 1942 1.6.19 and earlier, and Battlefield Vietnam 1.2 and earlier, allows a remote master server to cause a d...
CVE-2004-0915Multiple unknown vulnerabilities in viewcvs before 0.9.2, when exporting a repository as a tar archive, does not properl...
CVE-2004-1221Directory traversal vulnerability in weblibs.pl in WebLibs 1.0 allows remote attackers to read arbitrary files via .. se...
CVE-2004-1225SQL injection vulnerability in SugarCRM Sugar Sales before 2.0.1a allows remote attackers to execute arbitrary SQL comma...
CVE-2004-1134Buffer overflow in the Microsoft W3Who ISAPI (w3who.dll) allows remote attackers to cause a denial of service and possib...
CVE-2004-1216The scripts that handle players in Kreed 1.05 and earlier allow remote attackers to cause a denial of service (server fr...
CVE-2004-1217Hosting Controller 6.1 Hotfix 1.4, and possibly other versions, allows remote attackers to view arbitrary directories by...
CVE-2004-0890Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reasons: This candidate is a reservation duplicat...
CVE-2004-1133Multiple cross-site scripting (XSS) vulnerabilities in Microsoft W3Who ISAPI (w3who.dll) allow remote attackers to injec...
CVE-2004-1218Remote Execute 2.30 allows remote attackers to cause a denial of service (application crash) by making 7 simultaneous co...
CVE-2004-1026Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several windo...
CVE-2004-1171KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by t...
CVE-2004-0996main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite...
CVE-2004-1214Format string vulnerability in Kreed 1.05 and earlier allows remote attackers to execute arbitrary code via format speci...
CVE-2004-0893The Local Procedure Call (LPC) interface of the Windows Kernel for Windows NT 4.0, Windows 2000, Windows XP, and Windows...
CVE-2004-1054Untrusted execution path vulnerability in invscout in IBM AIX 5.1.0, 5.2.0, and 5.3.0 allows local users to gain privile...
CVE-2004-1254WinRAR 3.40, and possibly earlier versions, allows remote attackers to execute arbitrary code via a ZIP file containing ...
CVE-2004-1255Buffer overflow in the expandtabs function in 2fax 3.04 allows remote attackers to execute arbitrary code via a text fil...
CVE-2004-1008Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary co...
CVE-2004-1257Buffer overflow in the process_abc function in abc.c for abc2mtex 1.6.1 allows remote attackers to execute arbitrary cod...
CVE-2004-0901Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data len...
CVE-2004-1138VIM before 6.3 and gVim before 6.3 allow local users to execute arbitrary commands via a file containing a crafted model...
CVE-2004-1215Kreed 1.05 and earlier allows remote attackers to cause a denial of service (server disconnect) via a long UDP packet, w...
CVE-2004-1219paFileDB 3.1, when using sessions authentication and while the administrator logs on, allows remote attackers to read th...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now