2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-2115Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker...
CVE-2004-2046Unknown vulnerability in APC PowerChute Business Edition 6.0 through 7.0.1 allows remote attackers to cause a denial of ...
CVE-2004-2045The HTTP administration interface on Conceptronic CADSLR1 ADSL router running firmware 3.04n allows remote attackers to ...
CVE-2004-2442Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows S...
CVE-2004-2441Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related...
CVE-2004-2633Unspecified vulnerability in Sesamie 1.0 allows remote anonymous attackers to gain access to repositories of other users...
CVE-2004-2440Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (...
CVE-2004-1906Mcafee FreeScan allows remote attackers to cause a denial of service and possibly arbitrary code via a long string in th...
CVE-2004-2439The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote att...
CVE-2004-2632phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to My...
CVE-2004-2438Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HT...
CVE-2004-1907The Web Filtering functionality in Kerio Personal Firewall (KPF) 4.0.13 allows remote attackers to cause a denial of ser...
CVE-2004-2437SQL injection vulnerability in PHP-Fusion 4.01 allows remote attackers to execute arbitrary SQL commands via the rowstar...
CVE-2004-2631Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5.7, when LeftFrameLight is FALSE, allows remote at...
CVE-2004-2436Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndA...
CVE-2004-2017Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inje...
CVE-2004-2116Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a ....
CVE-2004-2435Cross-site scripting (XSS) vulnerability in PeopleSoft Human Resources Management System (HRMS) 7.0, when "web enabled" ...
CVE-2004-2434Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with...
CVE-2004-2726HTTPMail service in MailEnable Professional 1.18 does not properly handle arguments to the Authorization header, which a...
CVE-2004-2026Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and earlier allows remote attackers to execute...
CVE-2004-2025SQL injection vulnerability in application_top.php for Zen Cart 1.1.3 before patch 2 may allow remote attackers to execu...
CVE-2004-2024The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functi...
CVE-2004-2023SQL injection vulnerability in login.php in Zen Cart 1.1.2d, 1.1.4 before patch 1, and possibly other versions allows re...
CVE-2004-2476Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now