2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1052Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to ...
CVE-2004-1037The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in ...
CVE-2004-1036Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail...
CVE-2004-1053Integer overflow in fetch on FreeBSD 4.1 through 5.3 allows remote malicious servers to execute arbitrary code via certa...
CVE-2004-1034Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows ...
CVE-2004-1035Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMA...
CVE-2004-1038A design error in the IEEE1394 specification allows attackers with physical access to a device to read and write to sens...
CVE-2004-1029The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, do...
CVE-2004-1030fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to gain sensitive information by cal...
CVE-2004-1031fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to bypass access restrictions and lo...
CVE-2004-1021iCal before 1.5.4 on Mac OS X 10.2.3, and other later versions, does not alert the user when handling calendars that use...
CVE-2004-1010Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote at...
CVE-2004-1027Directory traversal vulnerability in the -x (extract) command line option in unarj allows remote attackers to overwrite ...
CVE-2004-1007The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (applic...
CVE-2004-1032fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to delete arbitrary files or create ...
CVE-2004-1002HIGH7.5Integer underflow in pppd in cbcp.c for ppp 2.4.1 allows remote attackers to cause a denial of service (daemon crash) vi...
CVE-2004-1003Trend ScanMail allows remote attackers to obtain potentially sensitive information or disable the anti-virus capability ...
CVE-2004-0992Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execut...
CVE-2004-1006Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary co...
CVE-2004-1001Unknown vulnerability in the passwd_check function in Shadow 4.0.4.1, and possibly other versions before 4.0.5, allows l...
CVE-2004-1033Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypas...
CVE-2004-1055Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 2.6.0-pl2 and earlier allow remote attackers to inject...
CVE-2004-0945The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 allows remote authe...
CVE-2004-0481The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other versions, allows local ...
CVE-2004-0964Buffer overflow in Zinf 2.2.1 on Windows, and other older versions for Linux, allows remote attackers or local users to ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now