2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1002HIGH7.5Integer underflow in pppd in cbcp.c for ppp 2.4.1 allows remote attackers to cause a denial of service (daemon crash) vi...
CVE-2004-0992Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execut...
CVE-2004-1003Trend ScanMail allows remote attackers to obtain potentially sensitive information or disable the anti-virus capability ...
CVE-2004-0988Integer overflow on Apple QuickTime before 6.5.2, when running on Windows systems, allows remote attackers to cause a de...
CVE-2004-1010Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote at...
CVE-2004-1007The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (applic...
CVE-2004-1027Directory traversal vulnerability in the -x (extract) command line option in unarj allows remote attackers to overwrite ...
CVE-2004-1021iCal before 1.5.4 on Mac OS X 10.2.3, and other later versions, does not alert the user when handling calendars that use...
CVE-2004-1006Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary co...
CVE-2004-1033Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors of open files, which allows local users to bypas...
CVE-2004-1001Unknown vulnerability in the passwd_check function in Shadow 4.0.4.1, and possibly other versions before 4.0.5, allows l...
CVE-2004-1032fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to delete arbitrary files or create ...
CVE-2004-1035Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMA...
CVE-2004-1034Buffer overflow in the http_open function in Kaffeine before 0.5, whose code is also used in gxine before 0.3.3, allows ...
CVE-2004-1031fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to bypass access restrictions and lo...
CVE-2004-1038A design error in the IEEE1394 specification allows attackers with physical access to a device to read and write to sens...
CVE-2004-1037The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in ...
CVE-2004-1052Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to ...
CVE-2004-1051sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create...
CVE-2004-1036Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail...
CVE-2004-1030fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to gain sensitive information by cal...
CVE-2004-1029The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, do...
CVE-2004-0945The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 allows remote authe...
CVE-2004-0481The logging feature in kcms_configure in the KCMS package on Solaris 8 and 9, and possibly other versions, allows local ...
CVE-2004-0960FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specif...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now