2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-2046 | — | — | 2.6% | Dec 31, 2004 | Unknown vulnerability in APC PowerChute Business Edition 6.0 through 7.0.1 allows remote attackers to cause a denial of ... |
| CVE-2004-2045 | — | — | 3.1% | Dec 31, 2004 | The HTTP administration interface on Conceptronic CADSLR1 ADSL router running firmware 3.04n allows remote attackers to ... |
| CVE-2004-2442 | — | — | 10.6% | Dec 31, 2004 | Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows S... |
| CVE-2004-2441 | — | — | 1.7% | Dec 31, 2004 | Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related... |
| CVE-2004-2633 | — | — | 1.2% | Dec 31, 2004 | Unspecified vulnerability in Sesamie 1.0 allows remote anonymous attackers to gain access to repositories of other users... |
| CVE-2004-2440 | — | — | 0.3% | Dec 31, 2004 | Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (... |
| CVE-2004-1906 | — | — | 4.0% | Dec 31, 2004 | Mcafee FreeScan allows remote attackers to cause a denial of service and possibly arbitrary code via a long string in th... |
| CVE-2004-2439 | — | — | 2.2% | Dec 31, 2004 | The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote att... |
| CVE-2004-2632 | — | — | 3.8% | Dec 31, 2004 | phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to My... |
| CVE-2004-2438 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HT... |
| CVE-2004-1907 | — | — | 6.7% | Dec 31, 2004 | The Web Filtering functionality in Kerio Personal Firewall (KPF) 4.0.13 allows remote attackers to cause a denial of ser... |
| CVE-2004-2437 | — | — | 1.2% | Dec 31, 2004 | SQL injection vulnerability in PHP-Fusion 4.01 allows remote attackers to execute arbitrary SQL commands via the rowstar... |
| CVE-2004-2631 | — | — | 9.4% | Dec 31, 2004 | Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5.7, when LeftFrameLight is FALSE, allows remote at... |
| CVE-2004-2436 | — | — | 0.5% | Dec 31, 2004 | Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndA... |
| CVE-2004-2017 | — | — | 2.8% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Turbo Traffic Trader C (TTT-C) 1.0 allow remote attackers to inje... |
| CVE-2004-2116 | — | — | 8.7% | Dec 31, 2004 | Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a .... |
| CVE-2004-2435 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in PeopleSoft Human Resources Management System (HRMS) 7.0, when "web enabled" ... |
| CVE-2004-2434 | — | — | 32.8% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with... |
| CVE-2004-2726 | — | — | 2.8% | Dec 31, 2004 | HTTPMail service in MailEnable Professional 1.18 does not properly handle arguments to the Authorization header, which a... |
| CVE-2004-2026 | — | — | 6.6% | Dec 31, 2004 | Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and earlier allows remote attackers to execute... |
| CVE-2004-2025 | — | — | 1.1% | Dec 31, 2004 | SQL injection vulnerability in application_top.php for Zen Cart 1.1.3 before patch 2 may allow remote attackers to execu... |
| CVE-2004-2024 | — | — | 1.1% | Dec 31, 2004 | The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functi... |
| CVE-2004-2023 | — | — | 1.8% | Dec 31, 2004 | SQL injection vulnerability in login.php in Zen Cart 1.1.2d, 1.1.4 before patch 1, and possibly other versions allows re... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now