2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-1310 | — | — | 5.2% | Jan 10, 2005 | Stack-based buffer overflow in the asf_mmst_streaming.c functionality for MPlayer 1.0pre5 allows remote attackers to exe... |
| CVE-2004-1297 | — | — | 6.0% | Jan 10, 2005 | Buffer overflow in the process_font_table function in convert.c for unrtf 0.19.3 allows remote attackers to execute arbi... |
| CVE-2004-1281 | — | — | 0.9% | Jan 10, 2005 | The ftp_retr function in junkie 0.3.1 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) ... |
| CVE-2004-1231 | — | — | 1.7% | Jan 10, 2005 | Directory traversal vulnerability in Gadu-Gadu allows remote attackers to read arbitrary files via .. (dot dot) sequence... |
| CVE-2004-1154 | — | — | 13.2% | Jan 10, 2005 | Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to ca... |
| CVE-2004-1183 | — | — | 3.9% | Jan 6, 2005 | Integer overflow in the tiffdump utility for libtiff 3.7.1 and earlier allows remote attackers to cause a denial of serv... |
| CVE-2004-1318 | — | — | 1.9% | Jan 6, 2005 | Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject a... |
| CVE-2004-1061 | — | — | 1.0% | Jan 4, 2005 | Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attacke... |
| CVE-2004-1312 | — | — | 2.5% | Jan 3, 2005 | A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote ... |
| CVE-2004-2566 | — | — | 1.7% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in LiveWorld products, possibly including (1) LiveForum, (2) LiveQ&A... |
| CVE-2004-2567 | — | — | 1.2% | Dec 31, 2004 | Multiple SQL injection vulnerabilities in ReciPants 1.1.1 allow remote attackers to execute arbitrary SQL commands via t... |
| CVE-2004-2696 | — | — | 1.3% | Dec 31, 2004 | BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, when using Remote Method Invocation (RMI) over Internet Inte... |
| CVE-2004-2568 | — | — | 1.2% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in ReciPants 1.1.1 allow remote attackers to inject arbitrary web sc... |
| CVE-2004-2569 | — | — | 0.5% | Dec 31, 2004 | ipmenu 0.0.3 before Debian GNU/Linux ipmenu_0.0.3-5 allows local users to overwrite arbitrary files via a symlink attack... |
| CVE-2004-2697 | — | — | 0.6% | Dec 31, 2004 | The Inventory Scout daemon (invscoutd) 1.3.0.0 and 2.0.2 for AIX 4.3.3 and 5.1 allows local users to gain privileges via... |
| CVE-2004-2570 | — | — | 3.0% | Dec 31, 2004 | Opera before 7.54 allows remote attackers to modify properties and methods of the location object and execute Javascript... |
| CVE-2004-2571 | — | — | 3.3% | Dec 31, 2004 | Multiple buffer overflows in EnderUNIX isoqlog 2.1.1 allow remote attackers to execute arbitrary code via the (1) parseQ... |
| CVE-2004-2698 | — | — | 0.5% | Dec 31, 2004 | Race condition in IMWheel 1.0.0pre11 and earlier, when running with the -k option, allows local users to cause a denial ... |
| CVE-2004-2572 | — | — | 1.7% | Dec 31, 2004 | AMAX Magic Winmail Server 3.6 allows remote attackers to obtain sensitive information by entering (1) invalid characters... |
| CVE-2004-2573 | — | — | 2.6% | Dec 31, 2004 | PHP remote file inclusion vulnerability in tables_update.inc.php in phpGroupWare 0.9.14.005 and earlier allows remote at... |
| CVE-2004-2699 | — | — | 2.2% | Dec 31, 2004 | deleteicon.aspx in AspDotNetStorefront 3.3 allows remote attackers to delete arbitrary product images via a modified Pro... |
| CVE-2004-2760 | — | — | 8.7% | Dec 31, 2004 | sshd in OpenSSH 3.5p1, when PermitRootLogin is disabled, immediately closes the TCP connection after a root login attemp... |
| CVE-2004-2574 | — | — | 3.6% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in index.php in phpGroupWare 0.9.14.005 and earlier allows remote attackers to ... |
| CVE-2004-2575 | — | — | 1.5% | Dec 31, 2004 | phpGroupWare 0.9.14.005 and earlier allow remote attackers to obtain sensitive information via a direct request to (1) h... |
| CVE-2004-2700 | — | — | 1.7% | Dec 31, 2004 | Unrestricted file upload vulnerability in AspDotNetStorefront 3.3 allows remote authenticated administrators to upload a... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now