2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2640 | — | — | 8.1% | Dec 31, 2004 | Directory traversal vulnerability in lstat.cgi in LinuxStat before 2.3.1 allows remote attackers to read arbitrary files... |
| CVE-2004-2732 | — | — | 4.0% | Dec 31, 2004 | nbmember.cgi in Netbilling 2.0 allows remote attackers to obtain sensitive information via the cmd=test option, which ca... |
| CVE-2004-2456 | — | — | 2.6% | Dec 31, 2004 | SQL injection vulnerability in index.php in miniBB 1.7f and earlier allows remote attackers to execute arbitrary SQL com... |
| CVE-2004-2457 | — | — | 1.6% | Dec 31, 2004 | Unspecified vulnerability in 3Com OfficeConnect ADSL 11g Router allows remote attackers to cause a denial of service (cr... |
| CVE-2004-2641 | — | — | 1.8% | Dec 31, 2004 | Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cau... |
| CVE-2004-2458 | — | — | 1.4% | Dec 31, 2004 | Open WebMail 2.30 and earlier, when use_syshomedir is disabled or create_syshomedir is enabled, creates new directories ... |
| CVE-2004-2459 | — | — | 0.6% | Dec 31, 2004 | Unknown vulnerability in gnubiff 1.2.0 and earlier allows local users to obtain passwords, related to the password table... |
| CVE-2004-2642 | — | — | 1.5% | Dec 31, 2004 | Yeemp 0.9.9 and earlier does not properly encrypt inbound files, which allows remote attackers to spoof the identity of ... |
| CVE-2004-2733 | — | — | 1.5% | Dec 31, 2004 | Web Wiz Forums 7.7a uses invalid logic to determine user privileges, which allows remote attackers to (1) block arbitrar... |
| CVE-2004-2460 | — | — | 1.6% | Dec 31, 2004 | Unknown vulnerability in POP3 in gnubiff before 2.0.0 allows remote attackers to cause a denial of service (application ... |
| CVE-2004-2461 | — | — | 2.5% | Dec 31, 2004 | Buffer overflow in pop3.c in gnubiff before 2.0.0 allows attackers to cause a denial of service (crash) and possibly exe... |
| CVE-2004-2643 | — | — | 7.0% | Dec 31, 2004 | Directory traversal vulnerability in Microsoft cabarc allows remote attackers to overwrite files via "../" sequences in ... |
| CVE-2004-2462 | — | — | 0.4% | Dec 31, 2004 | cplay 1.49 on Linux allows local users to overwrite arbitrary files via a symlink attack on the cplay_control temporary ... |
| CVE-2004-2463 | — | — | 4.2% | Dec 31, 2004 | Buffer overflow in ADA Image Server (ImgSvr) 0.4 allows remote attackers to cause a denial of service (web server crash)... |
| CVE-2004-2644 | — | — | 1.9% | Dec 31, 2004 | Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "... |
| CVE-2004-2734 | — | — | 4.0% | Dec 31, 2004 | webadmin-apache.conf in Novell Web Manager of Novell NetWare 6.5 uses an uppercase Alias tag with an inconsistent lowerc... |
| CVE-2004-2464 | — | — | 3.5% | Dec 31, 2004 | Directory traversal vulnerability in ADA Image Server (ImgSvr) 0.4 allows remote attackers to read arbitrary files or li... |
| CVE-2004-2465 | — | — | 1.0% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in chat.ghp in Easy Chat Server 1.2 allows remote attackers to inject arbitrary... |
| CVE-2004-2645 | — | — | 1.9% | Dec 31, 2004 | Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "... |
| CVE-2004-2466 | — | — | 74.7% | Dec 31, 2004 | chat.ghp in Easy Chat Server 1.2 allows remote attackers to cause a denial of service (server crash) via a long username... |
| CVE-2004-2467 | — | — | 2.8% | Dec 31, 2004 | chat.ghp in Easy Chat Server 1.2 allows remote attackers to add a large number of fake users, then eventually cause a de... |
| CVE-2004-2646 | — | — | 3.6% | Dec 31, 2004 | The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (unca... |
| CVE-2004-2735 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in P4DB 2.01 and earlier allows remote attackers to inject arbitrary web script... |
| CVE-2004-2469 | — | — | 1.2% | Dec 31, 2004 | Unspecified vulnerability in Reservation.class.php for phpScheduleIt 1.01 and earlier allows attackers to modify or dele... |
| CVE-2004-2121 | — | — | 3.1% | Dec 31, 2004 | Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to rea... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now