2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-2454aMSN 0.90 for Microsoft Windows allows local users to obtain sensitive information such as hashed passwords from (1) hot...
CVE-2004-2640Directory traversal vulnerability in lstat.cgi in LinuxStat before 2.3.1 allows remote attackers to read arbitrary files...
CVE-2004-2455Sweex Wireless Broadband Router/Accesspoint 802.11g (LC000060) allows remote attackers to obtain sensitive information a...
CVE-2004-2456SQL injection vulnerability in index.php in miniBB 1.7f and earlier allows remote attackers to execute arbitrary SQL com...
CVE-2004-2641Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cau...
CVE-2004-2733Web Wiz Forums 7.7a uses invalid logic to determine user privileges, which allows remote attackers to (1) block arbitrar...
CVE-2004-2457Unspecified vulnerability in 3Com OfficeConnect ADSL 11g Router allows remote attackers to cause a denial of service (cr...
CVE-2004-2458Open WebMail 2.30 and earlier, when use_syshomedir is disabled or create_syshomedir is enabled, creates new directories ...
CVE-2004-2642Yeemp 0.9.9 and earlier does not properly encrypt inbound files, which allows remote attackers to spoof the identity of ...
CVE-2004-2459Unknown vulnerability in gnubiff 1.2.0 and earlier allows local users to obtain passwords, related to the password table...
CVE-2004-2460Unknown vulnerability in POP3 in gnubiff before 2.0.0 allows remote attackers to cause a denial of service (application ...
CVE-2004-2643Directory traversal vulnerability in Microsoft cabarc allows remote attackers to overwrite files via "../" sequences in ...
CVE-2004-2734webadmin-apache.conf in Novell Web Manager of Novell NetWare 6.5 uses an uppercase Alias tag with an inconsistent lowerc...
CVE-2004-2461Buffer overflow in pop3.c in gnubiff before 2.0.0 allows attackers to cause a denial of service (crash) and possibly exe...
CVE-2004-2462cplay 1.49 on Linux allows local users to overwrite arbitrary files via a symlink attack on the cplay_control temporary ...
CVE-2004-2644Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "...
CVE-2004-2463Buffer overflow in ADA Image Server (ImgSvr) 0.4 allows remote attackers to cause a denial of service (web server crash)...
CVE-2004-2464Directory traversal vulnerability in ADA Image Server (ImgSvr) 0.4 allows remote attackers to read arbitrary files or li...
CVE-2004-2645Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "...
CVE-2004-2465Cross-site scripting (XSS) vulnerability in chat.ghp in Easy Chat Server 1.2 allows remote attackers to inject arbitrary...
CVE-2004-2466chat.ghp in Easy Chat Server 1.2 allows remote attackers to cause a denial of service (server crash) via a long username...
CVE-2004-2646The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (unca...
CVE-2004-2467chat.ghp in Easy Chat Server 1.2 allows remote attackers to add a large number of fake users, then eventually cause a de...
CVE-2004-2468Cross-site scripting (XSS) vulnerability in SillySearch 2.3 and earlier allows remote attackers to inject arbitrary web ...
CVE-2004-2647Free Web Chat 2.0 allows remote attackers to cause a denial of service (CPU consumption) via multiple connections from t...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now