2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1306——Heap-based buffer overflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows ...
CVE-2004-1343——CVS 1.12 and earlier on Debian GNU/Linux does not properly handle when a mapping for the current repository does not exi...
CVE-2004-1050——Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or ...
CVE-2004-1200——Firefox and Mozilla allow remote attackers to cause a denial of service (application crash from memory consumption), as ...
CVE-2004-0789——Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Netw...
CVE-2004-1384——Multiple cross-site scripting (XSS) vulnerabilities in phpGroupWare 0.9.16.003 and earlier allow remote attackers to inj...
CVE-2004-1402——SQL injection vulnerability in iWebNegar allows remote attackers to execute arbitrary SQL commands via (1) the string pa...
CVE-2004-1424——Cross-site scripting (XSS) vulnerability in view.php in Moodle 1.4.2 and earlier allows remote attackers to inject arbit...
CVE-2004-1189——The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a p...
CVE-2004-1186——Multiple buffer overflows in enscript 1.6.3 allow remote attackers or local users to cause a denial of service (applicat...
CVE-2004-1182——hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate an...
CVE-2004-0090——Unknown vulnerability in Windows File Sharing for Mac OS X 10.1.5 through 10.3.2 does not "shutdown properly," which has...
CVE-2004-1397——Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTM...
CVE-2004-1179——The debstd script in debmake 3.6.x before 3.6.10 and 3.7.x before 3.7.7 allows local users to overwrite arbitrary files ...
CVE-2004-0325——TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (CPU consumption) via "//../" arg...
CVE-2004-1173——Internet Explorer 6 allows remote attackers to bypass the popup blocker via the document object model (DOM) methods in t...
CVE-2004-0323——Multiple SQL injection vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to inject arbitrary SQL and gain priv...
CVE-2004-1198——Microsoft Internet Explorer allows remote attackers to cause a denial of service (application crash from memory consumpt...
CVE-2004-1296——The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink...
CVE-2004-1398——Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and p...
CVE-2004-1166——CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute...
CVE-2004-1156——Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting conten...
CVE-2004-1155——Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one wind...
CVE-2004-1393——Unknown vulnerability in the tcsetattr function for Sun Solaris for SPARC 2.6, 7, and 8 allows local users to cause a de...
CVE-2004-1394——The pfexec function for Sun Solaris 8 and 9 does not properly handle when a custom profile contains an invalid entry in ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now