2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-1814 | — | — | 1.8% | Dec 31, 2004 | Directory traversal vulnerability in VocalTec VGW4/8 Gateway 8.0 allows remote attackers to read protected files via .. ... |
| CVE-2004-1813 | — | — | 3.3% | Dec 31, 2004 | VocalTec VGW4/8 Gateway 8.0 allows remote attackers to bypass authentication via an HTTP request to home.asp with a trai... |
| CVE-2004-1812 | — | — | 46.2% | Dec 31, 2004 | Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 a... |
| CVE-2004-1811 | — | — | 2.3% | Dec 31, 2004 | The SSL HTTP Server in HP Web-enabled Management Software 5.0 through 5.92, with anonymous access enabled, allows remote... |
| CVE-2004-1810 | — | — | 3.2% | Dec 31, 2004 | The Javascript engine in Opera 7.23 allows remote attackers to cause a denial of service (crash) by creating a new Array... |
| CVE-2004-1809 | — | — | 1.4% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in phpBB 2.0.6d and earlier allows remote attackers to inject arbitrary web scr... |
| CVE-2004-1808 | — | — | 0.3% | Dec 31, 2004 | Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbit... |
| CVE-2004-1807 | — | — | 1.4% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to inject arbitrary web ... |
| CVE-2004-1806 | — | — | 2.1% | Dec 31, 2004 | SQL injection vulnerability in index.cfm in CFWebstore 5.0 allows remote attackers to execute SQL commands via the (1) c... |
| CVE-2004-1805 | — | — | 6.4% | Dec 31, 2004 | Format string vulnerability in games using the Epic Games Unreal Engine 436 allows remote attackers to cause a denial of... |
| CVE-2004-1804 | — | — | 1.6% | Dec 31, 2004 | wMCam server 2.1.348 allows remote attackers to cause a denial of service (no new connections) via multiple malformed HT... |
| CVE-2004-1802 | — | — | 1.5% | Dec 31, 2004 | Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which ... |
| CVE-2004-1801 | — | — | 3.1% | Dec 31, 2004 | Directory traversal vulnerability in PWebServer 0.3.3 allows remote attackers to read arbitrary files via a .. (dot dot)... |
| CVE-2004-1800 | — | — | 1.5% | Dec 31, 2004 | Unknown vulnerability in Sysbotz SimpleData 4.0.1 and possibly earlier versions allows remote attackers to gain access v... |
| CVE-2004-1799 | — | — | 1.5% | Dec 31, 2004 | PF in certain OpenBSD versions, when stateful filtering is enabled, does not limit packets for a session to the original... |
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-1797 | — | — | 3.9% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in search.php for FreznoShop 1.3.0 RC1 and earlier allows remote attackers to i... |
| CVE-2004-1796 | — | — | 9.3% | Dec 31, 2004 | PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP co... |
| CVE-2004-1795 | — | — | 0.3% | Dec 31, 2004 | Info Touch Surfnet kiosk allows local users to access the underlying filesystem via a 'file://' URI. |
| CVE-2004-1794 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in the VCard4J Toolkit allows remote attackers to inject arbitrary web script o... |
| CVE-2004-1793 | — | — | 5.8% | Dec 31, 2004 | Stack-based buffer overflow in swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote authenticated users to execu... |
| CVE-2004-1792 | — | — | 3.5% | Dec 31, 2004 | swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via ... |
| CVE-2004-1791 | — | — | 1.7% | Dec 31, 2004 | The web management interface in Edimax AR-6004 ADSL Routers uses a default administrator name and password, which also a... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
| CVE-2004-2116 | — | — | 8.7% | Dec 31, 2004 | Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a .... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now