2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2341 | — | — | 2.8% | Dec 31, 2004 | PHP file include injection vulnerability in isearch.inc.php for iSearch allows remote attackers to execute arbitrary cod... |
| CVE-2004-2584 | — | — | 1.1% | Dec 31, 2004 | frmAddfolder.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote authenticated users to create a folder... |
| CVE-2004-1837 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Mod_survey 3.0.x before 3.0.16-pre2 and 3.2.x before 3.2.0-pre4 allows remot... |
| CVE-2004-1836 | — | — | 4.4% | Dec 31, 2004 | SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to... |
| CVE-2004-1835 | — | — | 4.9% | Dec 31, 2004 | Multiple SQL injection vulnerabilities in index.php in Invision Gallery 1.0.1 allow remote attackers to execute arbitrar... |
| CVE-2004-2338 | — | — | 1.5% | Dec 31, 2004 | OpenBSD 3.3 and 3.4 does not properly parse Accept and Deny rules without netmasks on big-endian 64-bit platforms such a... |
| CVE-2004-2337 | — | — | 0.3% | Dec 31, 2004 | The /.inlook/.crypt file for inlook 0.7.3 and earlier is installed with world readable permissions, which allows local u... |
| CVE-2004-1832 | — | — | 1.8% | Dec 31, 2004 | Buffer overflow in the GUI admin service in Mac OS X Server 10.3 allows remote attackers to cause a denial of service (c... |
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-1831 | — | — | 2.7% | Dec 31, 2004 | Buffer overflow in Chrome 1.2.0.0 and earlier allows remote attackers to cause a denial of service (crash) via a packet ... |
| CVE-2004-2335 | — | — | 0.4% | Dec 31, 2004 | The Macromedia installers and e-licensing client on Mac OS X, as used for Macromedia Contribute 2, Director, Dreamweaver... |
| CVE-2004-1828 | — | — | 2.4% | Dec 31, 2004 | Vcard 2.9 and possibly other versions does not require authorization to run uninstall.php, which could allow remote atta... |
| CVE-2004-2334 | — | — | 4.8% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in EMU Webmail 5.2.7 allow remote attackers to inject arbitrary web ... |
| CVE-2004-2581 | — | — | 1.5% | Dec 31, 2004 | Novell iChain 2.3 allows attackers to cause a denial of service via a URL with a "specific string." |
| CVE-2004-2333 | — | — | 1.4% | Dec 31, 2004 | Bodington 2.1.0 RC1 and earlier does not secure the file upload area, which allows remote attackers to read uploaded fil... |
| CVE-2004-1824 | — | — | 2.6% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin before 3.0 allows remote attackers to inject arbitrary web... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
| CVE-2004-1823 | — | — | 2.2% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Jelsoft vBulletin 2.0 beta 3 through 3.0 can4 allows remote attac... |
| CVE-2004-2330 | — | — | 1.6% | Dec 31, 2004 | ColdFusion MX 6.1 and 6.1 J2EE allows remote attackers to cause a denial of service via an HTTP request containing a lar... |
| CVE-2004-2580 | — | — | 1.3% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in Novell iChain 2.3 allows remote attackers to obtain login credentials via un... |
| CVE-2004-2329 | — | — | 0.6% | Dec 31, 2004 | Kerio Personal Firewall (KPF) 2.1.5 allows local users to execute arbitrary code with SYSTEM privileges via the Load but... |
| CVE-2004-2579 | — | — | 2.1% | Dec 31, 2004 | ACLCHECK module in Novell iChain 2.3 allows attackers to bypass access control rules of an unspecified component via an ... |
| CVE-2004-2328 | — | — | 1.6% | Dec 31, 2004 | Clearswift MAILsweeper for SMTP before 4.3_13 allows remote attackers to cause a denial of service (infinite loop) via a... |
| CVE-2004-1783 | — | — | 2.8% | Dec 31, 2004 | Directory traversal vulnerability in Net2Soft Flash FTP Server 1.0 allows remote attackers to read and create arbitrary ... |
| CVE-2004-2116 | — | — | 8.7% | Dec 31, 2004 | Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a .... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now