2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1389——Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1...
CVE-2004-1419——PHP remote file inclusion vulnerability in ZeroBoard 4.1pl4 and earlier allows remote attackers to execute arbitrary PHP...
CVE-2004-1507——CRLF injection vulnerability in login.php in WebCalendar allows remote attackers to inject CRLF sequences via the return...
CVE-2004-1343——CVS 1.12 and earlier on Debian GNU/Linux does not properly handle when a mapping for the current repository does not exi...
CVE-2004-1525——Hired Team: Trial 2.0 and earlier and 2.200 allows remote attackers to cause a denial of service (application crash) via...
CVE-2004-1574——Buffer overflow in Vypress Messenger 3.5.1 and earlier allows remote attackers to execute arbitrary code via a message w...
CVE-2004-1579——index.php in CubeCart 2.0.1 allows remote attackers to gain sensitive information via an HTTP request with an invalid ca...
CVE-2004-1567——profile.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to gain privileges by setting the mail parameter ...
CVE-2004-0592——The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when...
CVE-2004-1568——Directory traversal vulnerability in ParaChat Server 5.5 allows remote attackers to read arbitrary files via a ..%5C (he...
CVE-2004-1530——SQL injection vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary ...
CVE-2004-0999——zgv 5.5.3 allows remote attackers to cause a denial of service (application crash via segmentation fault) via crafted mu...
CVE-2004-1566——Cross-site scripting (XSS) vulnerability in index.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to exec...
CVE-2004-1569——Buffer overflow in (1) MusicConverter.exe, (2) playlist.exe, and (3) amp.exe in dBpowerAMP Audio Player 2.0 and dbPowerA...
CVE-2004-1332——Stack-based buffer overflow in the FTP daemon in HP-UX 11.11i, with the -v (debug) option enabled, allows remote attacke...
CVE-2004-1497——Web Forums Server 1.6 and 2.0 Power Pack stores passwords in plaintext in the Username.ini file, which allows local user...
CVE-2004-1544——Cross-site scripting (XSS) vulnerability in Search.jsp in JSPWiki 2.1.120-cvs and earlier allows remote attackers to exe...
CVE-2004-1498——SQL injection vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute ar...
CVE-2004-1563——Multiple cross-site scripting (XSS) vulnerabilities in w-Agora 4.1.6a allow remote attackers to execute arbitrary web sc...
CVE-2004-1565——list.php in w-Agora 4.1.6a allows remote attackers to reveal the full path via a crafted HTTP request, possibly involvin...
CVE-2004-1570——SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p...
CVE-2004-0780——Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line...
CVE-2004-1327——Buffer overflow in Crystal FTP Client 2.8 allows remote malicious servers to execute arbitrary code via a response to a ...
CVE-2004-1328——Unknown vulnerability in newgrp in HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain elevated privileges.
CVE-2004-0904——Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and T...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now