2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1517Zone Labs IMsecure and IMsecure Pro before 1.5 allow remote attackers to bypass Active Link Filtering via an instant mes...
CVE-2004-1535PHP remote file inclusion vulnerability in admin_cash.php for the Cash Mod module for phpBB allows remote attackers to e...
CVE-2004-1450Unknown vulnerability in LiveConnect in Mozilla 1.7 beta allows remote attackers to read arbitrary files in known locati...
CVE-2004-1451Mozilla before 1.6 does not display the entire URL in the status bar when a link contains %00, which could allow remote ...
CVE-2004-1449Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of ...
CVE-2004-1452Tomcat before 5.0.27-r3 in Gentoo Linux sets the default permissions on the init scripts as tomcat:tomcat, but executes ...
CVE-2004-1446Unknown vulnerability in ScreenOS in Juniper Networks NetScreen firewall 3.x through 5.x allows remote attackers to caus...
CVE-2004-1447Jetbox One 2.0.8 and possibly other versions stores passwords in the database in plaintext, which could allow attackers ...
CVE-2004-1296The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink...
CVE-2004-1448Jetbox One 2.0.8 and possibly other versions allow remote attackers with Author privileges in the IMAGES module to uploa...
CVE-2004-1453GNU glibc 2.3.4 before 2.3.4.20040619, 2.3.3 before 2.3.3.20040420, and 2.3.2 before 2.3.2-r10 does not restrict the use...
CVE-2004-1444Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via .. (d...
CVE-2004-1445A race condition in nessus-adduser in Nessus 2.0.11 and possibly earlier versions, if the TMPDIR environment variable is...
CVE-2004-0913Unknown vulnerability in ecartis 0.x before 0.129a+1.0.0-snap20020514-1.3 and 1.x before 1.0.0+cvs.20030911-8 allows att...
CVE-2004-1189The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a p...
CVE-2004-1454Cisco IOS 12.0S, 12.2, and 12.3, with Open Shortest Path First (OSPF) enabled, allows remote attackers to cause a denial...
CVE-2004-1509validate.php in WebCalendar allows remote attackers to gain sensitive information via an invalid encoded_login parameter...
CVE-2004-0824PPPDialer for Mac OS X 10.2.8 through 10.3.5 allows local users to overwrite system files via a symlink attack on PPPDia...
CVE-2004-0979Internet Explorer on Windows XP does not properly modify the "Drag and Drop or copy and paste files" setting when the us...
CVE-2004-0592The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when...
CVE-2004-1186Multiple buffer overflows in enscript 1.6.3 allow remote attackers or local users to cause a denial of service (applicat...
CVE-2004-1455Stack-based buffer overflow in Xine-lib-rc5 in xine-lib 1_rc5-r2 and earlier allows remote attackers to execute arbitrar...
CVE-2004-1511Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute ar...
CVE-2004-0907The Linux install .tar.gz archives for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird...
CVE-2004-0984Unknown vulnerability in the dotlock implementation in mailutils before 1:0.5-4 on Debian GNU/Linux allows attackers to ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now