2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2391 | — | — | 1.6% | Dec 31, 2004 | Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of ... |
| CVE-2004-2608 | — | — | 1.5% | Dec 31, 2004 | SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insuffi... |
| CVE-2004-2390 | — | — | 1.4% | Dec 31, 2004 | The roster import functionality in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8, when usin... |
| CVE-2004-1940 | — | — | 4.1% | Dec 31, 2004 | sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN respon... |
| CVE-2004-2389 | — | — | 1.8% | Dec 31, 2004 | Unknown vulnerability in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attack... |
| CVE-2004-2607 | — | — | 0.5% | Dec 31, 2004 | A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users... |
| CVE-2004-1937 | — | — | 8.1% | Dec 31, 2004 | Multiple directory traversal vulnerabilities in Nuked-KlaN 1.4b and 1.5b allow remote attackers to read or include arbit... |
| CVE-2004-2388 | — | — | 2.1% | Dec 31, 2004 | rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the ... |
| CVE-2004-2387 | — | — | 3.7% | Dec 31, 2004 | Buffer overflow in the HandleCPCCommand function of sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attac... |
| CVE-2004-2606 | — | — | 2.6% | Dec 31, 2004 | The Web interface in Linksys WRT54G 2.02.7 and BEFSR41 version 3, with the firewall disabled, allows remote attackers to... |
| CVE-2004-2386 | — | — | 3.2% | Dec 31, 2004 | Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote att... |
| CVE-2004-1860 | — | — | 3.3% | Dec 31, 2004 | Buffer overflow in Check Point SmartDashboard in Check Point NG AI R54 and R55 allows remote authenticated users to caus... |
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-2385 | — | — | 6.7% | Dec 31, 2004 | EMU Webmail 5.2.7 allows remote attackers to obtain sensitive path information (home directory) via an HTTP request for ... |
| CVE-2004-2384 | — | — | 2.6% | Dec 31, 2004 | NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filenam... |
| CVE-2004-2714 | — | — | 1.0% | Dec 31, 2004 | Unspecified vulnerability in Window Maker 0.80.2 and earlier allows attackers to perform unknown actions via format stri... |
| CVE-2004-2383 | — | — | 20.0% | Dec 31, 2004 | Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to bypass cross-frame scripting restrictions and cap... |
| CVE-2004-2604 | — | — | 1.9% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in index.php in PHProxy allows remote attackers to inject arbitrary web script ... |
| CVE-2004-2382 | — | — | 1.6% | Dec 31, 2004 | The PerfectNav plugin for Microsoft Internet Explorer allows remote attackers to cause a denial of service (browser cras... |
| CVE-2004-1867 | — | — | 1.7% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary we... |
| CVE-2004-2116 | — | — | 8.7% | Dec 31, 2004 | Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a .... |
| CVE-2004-2380 | — | — | 1.8% | Dec 31, 2004 | Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to w... |
| CVE-2004-2379 | — | — | 1.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in @Mail 3.64 for Windows allow remote attackers to inject arbitrary... |
| CVE-2004-1885 | — | — | 3.5% | Dec 31, 2004 | Ipswitch WS_FTP Server 4.0.2 allows remote authenticated users to execute arbitrary programs as SYSTEM by using the SITE... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now