2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-1475 | — | — | 8.4% | Dec 31, 2004 | Multiple stack-based buffer overflows in xine-lib 1-rc2 through 1-rc5 allow attackers to execute arbitrary code via (1) ... |
| CVE-2004-1476 | — | — | 2.3% | Dec 31, 2004 | Stack-based buffer overflow in the VideoCD (VCD) code in xine-lib 1-rc2 through 1-rc5, as derived from libcdio, allows a... |
| CVE-2004-1481 | — | — | 4.3% | Dec 31, 2004 | Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Wi... |
| CVE-2004-1522 | — | — | 1.7% | Dec 31, 2004 | Format string vulnerability in Army Men RTS 1.0 allows remote attackers to cause a denial of service (application crash)... |
| CVE-2004-1541 | — | — | 2.1% | Dec 31, 2004 | SecureCRT 4.0, 4.1, and possibly other versions, allows remote attackers to execute arbitrary commands via a telnet:// U... |
| CVE-2004-1482 | — | — | 1.9% | Dec 31, 2004 | The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass a... |
| CVE-2004-1499 | — | — | 1.8% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers ... |
| CVE-2004-1500 | — | — | 1.9% | Dec 31, 2004 | Format string vulnerability in the Lithtech engine, as used in multiple games, allows remote authenticated users to caus... |
| CVE-2004-1525 | — | — | 1.6% | Dec 31, 2004 | Hired Team: Trial 2.0 and earlier and 2.200 allows remote attackers to cause a denial of service (application crash) via... |
| CVE-2004-1533 | — | — | 7.5% | Dec 31, 2004 | Buffer overflow in pop3svr.exe for DMS POP3 1.5.3.27 and earlier allows remote attackers to cause a denial of service (s... |
| CVE-2004-1519 | — | — | 1.2% | Dec 31, 2004 | SQL injection vulnerability in bug.php in phpBugTracker 0.9.1 allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2004-1542 | — | — | 3.5% | Dec 31, 2004 | Buffer overflow in Soldier of Fortune II 1.03 Gold and earlier allows remote attackers to cause a denial of service (ser... |
| CVE-2004-1543 | — | — | 7.1% | Dec 31, 2004 | Directory traversal vulnerability in viewimg.php in KorWeblog 1.6.2-cvs and earlier allows remote attackers to list arbi... |
| CVE-2004-1544 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Search.jsp in JSPWiki 2.1.120-cvs and earlier allows remote attackers to exe... |
| CVE-2004-1556 | — | — | 1.6% | Dec 31, 2004 | MyWebServer 1.0.3 allows remote attackers to cause a denial of service (application crash) via a large number of connect... |
| CVE-2004-0592 | — | — | 2.4% | Dec 31, 2004 | The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when... |
| CVE-2004-1306 | — | — | 34.5% | Dec 31, 2004 | Heap-based buffer overflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows ... |
| CVE-2004-0999 | — | — | 1.4% | Dec 31, 2004 | zgv 5.5.3 allows remote attackers to cause a denial of service (application crash via segmentation fault) via crafted mu... |
| CVE-2004-1473 | — | — | 3.9% | Dec 31, 2004 | Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 36... |
| CVE-2004-1472 | — | — | 3.7% | Dec 31, 2004 | Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 allow remote attackers to ca... |
| CVE-2004-1537 | — | — | 1.8% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in popup.php in PHPKIT 1.6.03 through 1.6.1 allows remote attackers to execute ... |
| CVE-2004-1538 | — | — | 1.3% | Dec 31, 2004 | SQL injection vulnerability in include.php in PHPKIT 1.6.03 through 1.6.1 allows remote attackers to execute arbitrary S... |
| CVE-2004-0948 | — | — | — | Dec 31, 2004 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2004-1394 | — | — | 0.3% | Dec 31, 2004 | The pfexec function for Sun Solaris 8 and 9 does not properly handle when a custom profile contains an invalid entry in ... |
| CVE-2004-1198 | — | — | 1.7% | Dec 31, 2004 | Microsoft Internet Explorer allows remote attackers to cause a denial of service (application crash from memory consumpt... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now