2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1052——Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to ...
CVE-2004-1037——The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in ...
CVE-2004-1036——Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail...
CVE-2004-1053——Integer overflow in fetch on FreeBSD 4.1 through 5.3 allows remote malicious servers to execute arbitrary code via certa...
CVE-2004-1034——Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows ...
CVE-2004-1035——Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMA...
CVE-2004-1038——A design error in the IEEE1394 specification allows attackers with physical access to a device to read and write to sens...
CVE-2004-1029——The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, do...
CVE-2004-1030——fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to gain sensitive information by cal...
CVE-2004-1031——fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to bypass access restrictions and lo...
CVE-2004-1021——iCal before 1.5.4 on Mac OS X 10.2.3, and other later versions, does not alert the user when handling calendars that use...
CVE-2004-1010——Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote at...
CVE-2004-1027——Directory traversal vulnerability in the -x (extract) command line option in unarj allows remote attackers to overwrite ...
CVE-2004-1007——The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (applic...
CVE-2004-1032——fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to delete arbitrary files or create ...
CVE-2004-1002HIGH7.5Integer underflow in pppd in cbcp.c for ppp 2.4.1 allows remote attackers to cause a denial of service (daemon crash) vi...
CVE-2004-1003——Trend ScanMail allows remote attackers to obtain potentially sensitive information or disable the anti-virus capability ...
CVE-2004-0992——Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execut...
CVE-2004-1006——Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary co...
CVE-2004-1001——Unknown vulnerability in the passwd_check function in Shadow 4.0.4.1, and possibly other versions before 4.0.5, allows l...
CVE-2004-1033——Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypas...
CVE-2004-1055——Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 2.6.0-pl2 and earlier allow remote attackers to inject...
CVE-2004-0945——The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 allows remote authe...
CVE-2004-0481——The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other versions, allows local ...
CVE-2004-0964——Buffer overflow in Zinf 2.2.1 on Windows, and other older versions for Linux, allows remote attackers or local users to ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now