2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1397——Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTM...
CVE-2004-1398——Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and p...
CVE-2004-1408——The addImage method for admin.class.php in Image Gallery Web Application 0.9.10 does not properly check filenames, which...
CVE-2004-1463——Unknown vulnerability in the PageEditor in MoinMoin 1.2.2 and earlier, related to Access Control Lists (ACL), has unknow...
CVE-2004-0931——MySQL MaxDB before 7.5.00.18 allows remote attackers to cause a denial of service (crash) via an HTTP request to webdbm ...
CVE-2004-0592——The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when...
CVE-2004-1241——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-1182——hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate an...
CVE-2004-1396——Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU ...
CVE-2004-1409——Multiple cross-site scripting vulnerabilities in Image Gallery Web Application 0.9.10 allow remote attackers to inject a...
CVE-2004-1464MEDIUM5.9Cisco IOS 12.2(15) and earlier allows remote attackers to cause a denial of service (refused VTY (virtual terminal) conn...
CVE-2004-1383——Multiple SQL injection vulnerabilities in phpGroupWare 0.9.16.003 and earlier allow remote attackers to execute arbitrar...
CVE-2004-1234——load_elf_binary in Linux before 2.4.26 allows local users to cause a denial of service (system crash) via an ELF binary ...
CVE-2004-1393——Unknown vulnerability in the tcsetattr function for Sun Solaris for SPARC 2.6, 7, and 8 allows local users to cause a de...
CVE-2004-0919——The syscons CONS_SCRSHOT ioctl in FreeBSD 5.x allows local users to read arbitrary kernel memory via (1) negative coordi...
CVE-2004-1444——Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via .. (d...
CVE-2004-1236——Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allow...
CVE-2004-1239——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-1401——SQL injection vulnerability in verify.asp in Asp-rider allows remote attackers to execute arbitrary SQL statements and b...
CVE-2004-1400——The control panel in ASP Calendar does not require authentication to access, which allows remote attackers to gain unaut...
CVE-2004-1403——PHP remote file inclusion vulnerability in index.php in GNUBoard 3.39 and earlier allows remote attackers to execute arb...
CVE-2004-1238——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-1173——Internet Explorer 6 allows remote attackers to bypass the popup blocker via the document object model (DOM) methods in t...
CVE-2004-1404——Attachment Mod 2.3.10 module for phpBB, when used with Apache mod_mime, does not properly handle files with multiple fil...
CVE-2004-0567——The Windows Internet Naming Service (WINS) in Windows NT Server 4.0 SP 6a, NT Terminal Server 4.0 SP 6, Windows 2000 Ser...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now