2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2612 | — | — | 1.5% | Dec 31, 2004 | BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functional... |
| CVE-2004-2401 | — | — | 3.5% | Dec 31, 2004 | Stack-based buffer overflow in Ipswitch IMail Express Web Messaging before 8.05 might allow remote attackers to execute ... |
| CVE-2004-2402 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in YaBB.pl in YaBB 1 GOLD SP 1.3.2 allows remote attackers to inject arbitrary ... |
| CVE-2004-2613 | — | — | 2.5% | Dec 31, 2004 | Unspecified vulnerability in procfs in the Linux-VServer stable branch for the 2.4 kernel before 1.23 and Linux-VServer ... |
| CVE-2004-2718 | — | — | 1.7% | Dec 31, 2004 | PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive in... |
| CVE-2004-2719 | — | — | 7.0% | Dec 31, 2004 | Buffer overflow in the UrlToLocal function in PunyLib.dll of Foxmail 5.0.300 allows remote attackers to execute arbitrar... |
| CVE-2004-2230 | — | — | 0.4% | Dec 31, 2004 | Heap-based buffer overflow in isakmpd on OpenBSD 3.4 through 3.6 allows local users to cause a denial of service (panic)... |
| CVE-2004-2403 | — | — | 2.8% | Dec 31, 2004 | Cross-site request forgery (CSRF) vulnerability in YaBB 1 GOLD SP 1.3.2 allows remote attackers to perform unauthorized ... |
| CVE-2004-2405 | — | — | 1.7% | Dec 31, 2004 | Buffer overflow in multiple F-Secure Anti-Virus products, including F-Secure Anti-Virus 5.42 and earlier, allows remote ... |
| CVE-2004-2614 | — | — | 6.8% | Dec 31, 2004 | Buffer overflow in MyWeb 3.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary... |
| CVE-2004-2406 | — | — | 1.4% | Dec 31, 2004 | Unknown "overflow" in the phpgw_config table for phpGroupWare before 0.9.14.002 has unknown attack vectors and impact. |
| CVE-2004-2407 | — | — | 1.5% | Dec 31, 2004 | Unknown vulnerability in phpGroupWare before 0.9.14.002 has unknown attack vectors and impact, related to a "security ho... |
| CVE-2004-2615 | — | — | 0.3% | Dec 31, 2004 | The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manual... |
| CVE-2004-2720 | — | — | 4.1% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers... |
| CVE-2004-2408 | — | — | 0.4% | Dec 31, 2004 | Linux VServer 1.27 and earlier, 1.3.9 and earlier, and 1.9.1 and earlier shares /proc permissions across all virtual and... |
| CVE-2004-2409 | — | — | 0.5% | Dec 31, 2004 | Buffer overflow in the sh_hash_compdata function for Samhain 1.8.9 through 2.0.1, when running in update mode ("-t updat... |
| CVE-2004-2616 | — | — | 1.2% | Dec 31, 2004 | The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information... |
| CVE-2004-2410 | — | — | 0.4% | Dec 31, 2004 | Unknown vulnerability in sh_hash_compdata for Samhain 1.8.9 through 2.0.1 might allow attackers to cause a denial of ser... |
| CVE-2004-2411 | — | — | 2.2% | Dec 31, 2004 | The CleanseMessage function in shop$db.asp for VP-ASP Shopping Cart 4.0 through 5.0 does not sufficiently cleanse inputs... |
| CVE-2004-2617 | — | — | 3.8% | Dec 31, 2004 | Directory traversal vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to read files outside of the ... |
| CVE-2004-2721 | — | — | 1.7% | Dec 31, 2004 | The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the "p" variable might not be pr... |
| CVE-2004-2412 | — | — | 1.2% | Dec 31, 2004 | Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitra... |
| CVE-2004-2413 | — | — | 1.2% | Dec 31, 2004 | SQL injection vulnerability in VP-ASP Shopping Cart 4.0 through 5.0 allows remote attackers to execute arbitrary SQL com... |
| CVE-2004-2618 | — | — | 2.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to inject arbitrary we... |
| CVE-2004-2414 | — | — | 0.4% | Dec 31, 2004 | Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a custom installation with ... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now