2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-2418Buffer overflow in SlimFTPd 3.15 and earlier allows local users to execute arbitrary code via a long command, such as (1...
CVE-2004-2722Nessus 2.0.10a stores account passwords in plaintext in .nessusrc files, which allows local users to obtain passwords. ...
CVE-2004-2417Format string vulnerability in smtp.c for smtp.proxy 1.1.3 and earlier allows remote attackers to execute arbitrary code...
CVE-2004-2620The MIMEH_read_headers function in ripMIME 1.3.1.0 does not properly handle trailing "\r" and "\n" characters in headers...
CVE-2004-2416Buffer overflow in the logging component of CCProxy allows remote attackers to execute arbitrary code via a long HTTP GE...
CVE-2004-1836SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to...
CVE-2004-2115Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker...
CVE-2004-2415Davenport before 0.9.10 allows attackers to cause a denial of service (resource consumption) via (1) a very large XML fi...
CVE-2004-2414Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a custom installation with ...
CVE-2004-1887Ada Image Server (ImgSvr) 0.4 allows remote attackers to view directories or download files via an HTTP request with a t...
CVE-2004-2413SQL injection vulnerability in VP-ASP Shopping Cart 4.0 through 5.0 allows remote attackers to execute arbitrary SQL com...
CVE-2004-2618Cross-site scripting (XSS) vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote attackers to inject arbitrary we...
CVE-2004-2412Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitra...
CVE-2004-1883Multiple buffer overflows in Ipswitch WS_FTP Server 4.0.2 (1) allow remote authenticated users to execute arbitrary code...
CVE-2004-2116Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a ....
CVE-2004-2411The CleanseMessage function in shop$db.asp for VP-ASP Shopping Cart 4.0 through 5.0 does not sufficiently cleanse inputs...
CVE-2004-2410Unknown vulnerability in sh_hash_compdata for Samhain 1.8.9 through 2.0.1 might allow attackers to cause a denial of ser...
CVE-2004-2721The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the "p" variable might not be pr...
CVE-2004-2409Buffer overflow in the sh_hash_compdata function for Samhain 1.8.9 through 2.0.1, when running in update mode ("-t updat...
CVE-2004-2616The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information...
CVE-2004-2408Linux VServer 1.27 and earlier, 1.3.9 and earlier, and 1.9.1 and earlier shares /proc permissions across all virtual and...
CVE-2004-1937Multiple directory traversal vulnerabilities in Nuked-KlaN 1.4b and 1.5b allow remote attackers to read or include arbit...
CVE-2004-2407Unknown vulnerability in phpGroupWare before 0.9.14.002 has unknown attack vectors and impact, related to a "security ho...
CVE-2004-2615The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manual...
CVE-2004-2476Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now