2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-2414Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a custom installation with ...
CVE-2004-2619ripMIME 1.3.2.3 and earlier allows remote attackers to bypass e-mail protection via a base64 MIME encoded attachment con...
CVE-2004-2415Davenport before 0.9.10 allows attackers to cause a denial of service (resource consumption) via (1) a very large XML fi...
CVE-2004-2416Buffer overflow in the logging component of CCProxy allows remote attackers to execute arbitrary code via a long HTTP GE...
CVE-2004-2620The MIMEH_read_headers function in ripMIME 1.3.1.0 does not properly handle trailing "\r" and "\n" characters in headers...
CVE-2004-2417Format string vulnerability in smtp.c for smtp.proxy 1.1.3 and earlier allows remote attackers to execute arbitrary code...
CVE-2004-2418Buffer overflow in SlimFTPd 3.15 and earlier allows local users to execute arbitrary code via a long command, such as (1...
CVE-2004-2621Nortel Contivity VPN Client 2.1.7, 3.00, 3.01, 4.91, and 5.01, when opening a VPN tunnel, does not check the gateway cer...
CVE-2004-2419Keene Digital Media Server 1.0.2 allows local users to obtain usernames and passwords by reading the dmscore.db file on ...
CVE-2004-2420Hitachi Job Management Partner (JP1) JP1/File Transmission Server/FTP 6 and 7 allows remote attackers to cause a denial ...
CVE-2004-2623Unknown vulnerability in Rippy the Aggregator before 0.10, when register_globals is enabled, has unknown attack vectors ...
CVE-2004-2723NessusWX 1.4.4 stores account passwords in plaintext in .session files, which allows local users to obtain passwords.
CVE-2004-2724LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU c...
CVE-2004-2421Unknown vulnerability in Hitachi Job Management Partner (JP1) JP1/File Transmission Server/FTP 6 and 7, when running on ...
CVE-2004-2422Multiple features in Ipswitch IMail Server before 8.13 allow remote attackers to cause a denial of service (crash) via (...
CVE-2004-2624Cross-site scripting (XSS) vulnerability in "TextSearch" in WackoWiki 3.5 allows remote attackers to inject arbitrary we...
CVE-2004-2423Unknown vulnerability in the Web calendaring component of Ipswitch IMail Server before 8.13 allows remote attackers to c...
CVE-2004-2424BEA WebLogic Server and WebLogic Express 8.1 through 8.1 SP2 allow remote attackers to cause a denial of service (networ...
CVE-2004-2625Cross-site scripting (XSS) vulnerability in Outblaze Email allows remote attackers to inject arbitrary web script or HTM...
CVE-2004-2725Multiple cross-site scripting (XSS) vulnerabilities in Aztek Forum 4.0 allow remote attackers to inject arbitrary web sc...
CVE-2004-2425Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to execute arbitrary co...
CVE-2004-2426Directory traversal vulnerability in Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows rem...
CVE-2004-2626GUI overlay vulnerability in the Java API in Siemens S55 cellular phones allows remote attackers to send unauthorized SM...
CVE-2004-2427Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to obtain sensitive inf...
CVE-2004-2428Abczone.it WWWguestbook 1.1 stores db/dbase.mdb under the web document root with insufficient access control, which allo...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now