2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-1892 | — | — | 10.0% | Dec 31, 2004 | Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, a... |
| CVE-2004-1891 | — | — | 0.9% | Dec 31, 2004 | The ftp_syslog function in ftpd in SGI IRIX 6.5.20 "doesn't work with anonymous FTP," which has an unknown impact, possi... |
| CVE-2004-2113 | — | — | 1.9% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or ... |
| CVE-2004-1889 | — | — | 2.4% | Dec 31, 2004 | Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (ha... |
| CVE-2004-1888 | — | — | 9.3% | Dec 31, 2004 | display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file ... |
| CVE-2004-1887 | — | — | 3.8% | Dec 31, 2004 | Ada Image Server (ImgSvr) 0.4 allows remote attackers to view directories or download files via an HTTP request with a t... |
| CVE-2004-1885 | — | — | 3.5% | Dec 31, 2004 | Ipswitch WS_FTP Server 4.0.2 allows remote authenticated users to execute arbitrary programs as SYSTEM by using the SITE... |
| CVE-2004-2363 | — | — | 1.8% | Dec 31, 2004 | Validate-Before-Canonicalize vulnerability in the checkURI function in functions.inc.php in PHPX 3.0 through 3.2.6 allow... |
| CVE-2004-1883 | — | — | 5.2% | Dec 31, 2004 | Multiple buffer overflows in Ipswitch WS_FTP Server 4.0.2 (1) allow remote authenticated users to execute arbitrary code... |
| CVE-2004-1882 | — | — | 4.0% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in popuplargeimage.asp in CactuShop 5.x allows remote attackers to inject arbit... |
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-1880 | — | — | 1.8% | Dec 31, 2004 | Memory leak in the back-bdb backend for OpenLDAP 2.1.12 and earlier allows remote attackers to cause a denial of service... |
| CVE-2004-1879 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in PHPKIT 1.6.03 allows allows remote attackers to inject arbitrary web script ... |
| CVE-2004-2360 | — | — | 3.4% | Dec 31, 2004 | Targem Battle Mages 1.0 allows remote attackers to cause a denial of service (infinite loop) via a UDP packet with incom... |
| CVE-2004-2359 | — | — | 5.7% | Dec 31, 2004 | Dell TrueMobile 1300 WLAN Mini-PCI Card Util TrayApplet 3.10.39.0 does not properly drop SYSTEM privileges when started ... |
| CVE-2004-2593 | — | — | 3.8% | Dec 31, 2004 | Buffer overflow in command-packet processing of Quake II server before R1Q2, as used in multiple products, allows remote... |
| CVE-2004-2358 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in admin_words.php for phpBB 2.0.6c allows remote attackers to inject arbitrary... |
| CVE-2004-1801 | — | — | 3.1% | Dec 31, 2004 | Directory traversal vulnerability in PWebServer 0.3.3 allows remote attackers to read arbitrary files via a .. (dot dot)... |
| CVE-2004-1873 | — | — | 2.4% | Dec 31, 2004 | SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via ... |
| CVE-2004-2357 | — | — | 1.4% | Dec 31, 2004 | The embedded MySQL 4.0 server for Proofpoint Protection Server does not require a password for the root user of MySQL, w... |
| CVE-2004-2356 | — | — | 2.6% | Dec 31, 2004 | Early termination vulnerability in Fizmez Web Server 1.0 allows remote attackers to cause a denial of service (crash) by... |
| CVE-2004-2709 | — | — | 2.4% | Dec 31, 2004 | Buffer overflow in the strip_html_tags method for Gyach Enhanced (Gyach-E) before 1.0.4 allows remote attackers to cause... |
| CVE-2004-1869 | — | — | 1.7% | Dec 31, 2004 | Etherlords I 1.07 and earlier and Etherlords II 1.03 and earlier allows remote attackers to cause a denial of service (c... |
| CVE-2004-2355 | — | — | 2.0% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Crafty Syntax Live Help (CSLH) before 2.7.4 allows remote attackers to injec... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now