2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2575 | — | — | 1.5% | Dec 31, 2004 | phpGroupWare 0.9.14.005 and earlier allow remote attackers to obtain sensitive information via a direct request to (1) h... |
| CVE-2004-2576 | — | — | 1.5% | Dec 31, 2004 | class.vfs_dav.inc.php in phpGroupWare 0.9.16.000 does not create .htaccess files to enable authorization checks for acce... |
| CVE-2004-2701 | — | — | 1.5% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in signin.aspx for AspDotNetStorefront 3.3 allows remote attackers to inject ar... |
| CVE-2004-2577 | — | — | 1.4% | Dec 31, 2004 | The acl_check function in phpGroupWare 0.9.16RC2 always returns True, even when mkdir does not behave as expected, which... |
| CVE-2004-2578 | — | — | 1.4% | Dec 31, 2004 | phpGroupWare before 0.9.16.002 transmits the (1) header admin and (2) setup passwords in plaintext via cookies, which al... |
| CVE-2004-2702 | — | — | 1.9% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in login_up.php3 in Plesk 7.0 and 7.1 Reloaded allows remote attackers to injec... |
| CVE-2004-2579 | — | — | 2.1% | Dec 31, 2004 | ACLCHECK module in Novell iChain 2.3 allows attackers to bypass access control rules of an unspecified component via an ... |
| CVE-2004-2580 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Novell iChain 2.3 allows remote attackers to obtain login credentials via un... |
| CVE-2004-2581 | — | — | 1.5% | Dec 31, 2004 | Novell iChain 2.3 allows attackers to cause a denial of service via a URL with a "specific string." |
| CVE-2004-2582 | — | — | 1.7% | Dec 31, 2004 | Novell iChain 2.3 includes the build number in the VIA line of the proxy server's HTTP headers, which allows remote atta... |
| CVE-2004-2703 | — | — | 1.1% | Dec 31, 2004 | Clearswift MIMEsweeper 5.0.5, when it has been upgraded from MAILsweeper for SMTP version 4.3 or MAILsweeper Business Su... |
| CVE-2004-2704 | — | — | 4.7% | Dec 31, 2004 | Hastymail 1.0.1 and earlier (stable) and 1.1 and earlier (development) does not send the "attachment" parameter in the C... |
| CVE-2004-2388 | — | — | 2.1% | Dec 31, 2004 | rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the ... |
| CVE-2004-2583 | — | — | 1.8% | Dec 31, 2004 | SMTP service in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service (CPU... |
| CVE-2004-2584 | — | — | 1.1% | Dec 31, 2004 | frmAddfolder.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote authenticated users to create a folder... |
| CVE-2004-2705 | — | — | 1.4% | Dec 31, 2004 | Unspecified vulnerability in Player vs. Player Gaming Network (PvPGN) before 1.6.4 allows remote attackers to obtain att... |
| CVE-2004-2585 | — | — | 1.4% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in frmCompose.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows rem... |
| CVE-2004-2586 | — | — | 1.9% | Dec 31, 2004 | Directory traversal vulnerability in frmGetAttachment.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remo... |
| CVE-2004-2706 | — | — | 1.1% | Dec 31, 2004 | Unspecified vulnerability in Gyach Enhanced (Gyach-E) before 1.0.4 allows remote attackers to cause a denial of service ... |
| CVE-2004-2587 | — | — | 1.9% | Dec 31, 2004 | login.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service via a ... |
| CVE-2004-2588 | — | — | 3.1% | Dec 31, 2004 | Intentional information leak in phpinfo.php in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allows remote a... |
| CVE-2004-2589 | — | — | 1.5% | Dec 31, 2004 | Gaim before 0.82 allows remote servers to cause a denial of service (application crash) via a long HTTP Content-Length h... |
| CVE-2004-2590 | — | — | 1.9% | Dec 31, 2004 | Unspecified vulnerability in meindlSOFT Cute PHP Library (aka cphplib) 0.46 has unknown impact and attack vectors, relat... |
| CVE-2004-2707 | — | — | 1.3% | Dec 31, 2004 | Multiple unspecified vulnerabilities in Gyach Enhanced (Gyach-E) before 1.0.5 have unknown impact and attack vectors rel... |
| CVE-2004-2708 | — | — | 0.9% | Dec 31, 2004 | Gyach Enhanced (Gyach-E) before 1.0.0 stores passwords in plaintext, which allows attackers to obtain user passwords by ... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now