2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-2101The sysinfo script in GeoHttpServer allows remote attackers to cause a denial of service (crash) via a long pwd paramete...
CVE-2004-2100GeoHttpServer, when configured to authenticate users, allows remote attackers to bypass authentication and access unauth...
CVE-2004-2650Spooler in Apache Foundation James 2.2.0 allows local users to cause a denial of service (memory consumption) by trigger...
CVE-2004-2098Cross-site scripting (XSS) vulnerability in the banner engine (TBE) 5.0 allows remote attackers to execute arbitrary scr...
CVE-2004-2097Multiple scripts on SuSE Linux 9.0 allow local users to overwrite arbitrary files via a symlink attack on (1) /tmp/fvwm-...
CVE-2004-2096Cross-site scripting (XSS) vulnerability in Mephistoles httpd 0.6.0 final allows remote attackers to execute arbitrary s...
CVE-2004-2095Honeyd before 0.8 replies to TCP packets with the SYN and RST flags set, which allows remote attackers to identify IP ad...
CVE-2004-2094Cross-site scripting (XSS) vulnerability in WebcamXP 1.06.945 allows remote attackers to inject arbitrary HTML or web sc...
CVE-2004-2465Cross-site scripting (XSS) vulnerability in chat.ghp in Easy Chat Server 1.2 allows remote attackers to inject arbitrary...
CVE-2004-2646The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (unca...
CVE-2004-2113Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or ...
CVE-2004-2464Directory traversal vulnerability in ADA Image Server (ImgSvr) 0.4 allows remote attackers to read arbitrary files or li...
CVE-2004-2463Buffer overflow in ADA Image Server (ImgSvr) 0.4 allows remote attackers to cause a denial of service (web server crash)...
CVE-2004-2063Cross-site scripting (XSS) vulnerability in antiboard.php in AntiBoard 0.7.2 and earlier allows remote attackers to inje...
CVE-2004-2462cplay 1.49 on Linux allows local users to overwrite arbitrary files via a symlink attack on the cplay_control temporary ...
CVE-2004-2644Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "...
CVE-2004-2461Buffer overflow in pop3.c in gnubiff before 2.0.0 allows attackers to cause a denial of service (crash) and possibly exe...
CVE-2004-2071Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authenticat...
CVE-2004-2115Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker...
CVE-2004-2460Unknown vulnerability in POP3 in gnubiff before 2.0.0 allows remote attackers to cause a denial of service (application ...
CVE-2004-2081The samiftp.dll library in Sami FTP Server 1.1.3 allows local users to cause a denial of service (pmsystem.exe crash) by...
CVE-2004-2459Unknown vulnerability in gnubiff 1.2.0 and earlier allows local users to obtain passwords, related to the password table...
CVE-2004-2458Open WebMail 2.30 and earlier, when use_syshomedir is disabled or create_syshomedir is enabled, creates new directories ...
CVE-2004-2642Yeemp 0.9.9 and earlier does not properly encrypt inbound files, which allows remote attackers to spoof the identity of ...
CVE-2004-2476Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now