2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2468 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in SillySearch 2.3 and earlier allows remote attackers to inject arbitrary web ... |
| CVE-2004-2470 | — | — | 1.7% | Dec 31, 2004 | Unspecified vulnerability in MadBMS before 1.1.5 has unknown impact and attack vectors, related to logins. |
| CVE-2004-2647 | — | — | 3.6% | Dec 31, 2004 | Free Web Chat 2.0 allows remote attackers to cause a denial of service (CPU consumption) via multiple connections from t... |
| CVE-2004-2471 | — | — | 1.2% | Dec 31, 2004 | SQL injection vulnerability in the sloth TCL script in QuoteEngine before 1.2.0 allow remote attackers to execute arbitr... |
| CVE-2004-2472 | — | — | 1.8% | Dec 31, 2004 | Agnitum Outpost Pro Firewall 2.1 allows remote attackers to cause a denial of service (CPU consumption) via a flood of s... |
| CVE-2004-2648 | — | — | 0.4% | Dec 31, 2004 | FreezeX 1.00.100.0666 allows local users with administrator privileges to cause a denial of service (FreezeX application... |
| CVE-2004-2736 | — | — | 5.4% | Dec 31, 2004 | Polar HelpDesk 3.0 allows remote attackers to bypass authentication by setting the UserId and UserType values in a cooki... |
| CVE-2004-2473 | — | — | 0.4% | Dec 31, 2004 | wmFrog weather monitor 0.1.6 and other versions before 0.2.0 allows local users to overwrite arbitrary files via a symli... |
| CVE-2004-2111 | — | — | 86.9% | Dec 31, 2004 | Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute... |
| CVE-2004-2474 | — | — | 1.2% | Dec 31, 2004 | SQL injection vulnerability in PHPNews 1.2.3 allows remote attackers to execute arbitrary SQL commands via the mid param... |
| CVE-2004-2649 | — | — | 2.5% | Dec 31, 2004 | Eudora 6.1.0.6 allows remote attackers to obfuscate URLs displayed in the status bar by inserting a large number of char... |
| CVE-2004-2112 | — | — | 3.6% | Dec 31, 2004 | Directory traversal vulnerability in BremsServer 1.2.4 allows remote attackers to read arbitrary files via ".." (dot dot... |
| CVE-2004-2113 | — | — | 1.9% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or ... |
| CVE-2004-2475 | — | — | 3.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Google Toolbar 2.0.114.1 allows remote attackers to inject arbitrary web scr... |
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-2116 | — | — | 8.7% | Dec 31, 2004 | Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a .... |
| CVE-2004-2110 | — | — | 1.1% | Dec 31, 2004 | SQL injection vulnerability in register.php in Phorum before 3.4.6 allows remote attackers to execute arbitrary SQL comm... |
| CVE-2004-2109 | — | — | 2.2% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in (1) imagezoom.asp or (2) recommend.asp in Q-Shop allow remote att... |
| CVE-2004-2108 | — | — | 3.2% | Dec 31, 2004 | Multiple SQL injection vulnerabilities in QuadComm Q-Shop allow remote attackers to execute arbitrary SQL commands via c... |
| CVE-2004-2107 | — | — | 7.7% | Dec 31, 2004 | Finjan SurfinGate 6.0 and 7.0, when running in proxy mode, does not authenticate FHTTP commands on TCP port 3141, which ... |
| CVE-2004-2106 | — | — | 2.3% | Dec 31, 2004 | Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to list directories via a direct request to (1)... |
| CVE-2004-2104 | — | — | 11.9% | Dec 31, 2004 | Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to obtain sensitive server information, includi... |
| CVE-2004-2103 | — | — | 2.1% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to ... |
| CVE-2004-2102 | — | — | 1.4% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in FREESCO 2.05, a modified version of thttpd, allows remote attackers to injec... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now