2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1494——Buffer overflow in the Screen Fetch option in XDICT 2002 through 2005 allows remote attackers to cause a denial of servi...
CVE-2004-1510——WebCalendar allows remote attackers to gain privileges by modifying critical parameters to (1) view_entry.php or (2) upc...
CVE-2004-2279——Cross-site scripting (XSS) vulnerability in Invision Power Board 1.3 Final allows remote attackers to execute arbitrary ...
CVE-2004-2312——Buffer overflow in GNU make for IBM AIX 4.3.3, when installed setgid, allows local users to gain privileges via a long C...
CVE-2004-1166——CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute...
CVE-2004-2349——Multiple SQL injection vulnerabilities in Tunez before 1.20-pre2 allow remote attackers to execute arbitrary SQL queries...
CVE-2004-1140——Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (application hang) and possibly fill ...
CVE-2004-1238——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-2148——Unknown local vulnerability in the "change user" feature of Slava Astashonok Fprobe 1.0.5 and earlier has unknown impact...
CVE-2004-2129——SurfNOW 2.2 allows remote attackers to cause a denial of service (crash) via a series of long HTTP GET requests, possibl...
CVE-2004-2199——Cross-site scripting (XSS) vulnerability in DUware DUclassified 4.0 allows remote attackers to inject arbitrary web scri...
CVE-2004-1173——Internet Explorer 6 allows remote attackers to bypass the popup blocker via the document object model (DOM) methods in t...
CVE-2004-2137——Outlook Express 6.0, when sending multipart e-mail messages using the "Break apart messages larger than" setting, leaks ...
CVE-2004-1241——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-2271——Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req...
CVE-2004-2280——Buffer overflow in IBM Lotus Notes 6.5.x before 6.5.3 and 6.0.x before 6.0.5 allows remote attackers to cause a denial o...
CVE-2004-1439——Buffer overflow in BlackJumboDog 3.x allows remote attackers to execute arbitrary code via long FTP commands such as (1)...
CVE-2004-1509——validate.php in WebCalendar allows remote attackers to gain sensitive information via an invalid encoded_login parameter...
CVE-2004-1899——The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST...
CVE-2004-1182——hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate an...
CVE-2004-2072——Cross-site scripting (XSS) vulnerability in index.php for Mambo Open Source 4.6, and possibly earlier versions, allows r...
CVE-2004-1907——The Web Filtering functionality in Kerio Personal Firewall (KPF) 4.0.13 allows remote attackers to cause a denial of ser...
CVE-2004-2104——Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to obtain sensitive server information, includi...
CVE-2004-1186——Multiple buffer overflows in enscript 1.6.3 allow remote attackers or local users to cause a denial of service (applicat...
CVE-2004-2218——SQL injection vulnerability in pmwh.php in PHPMyWebHosting 0.3.4 and earlier allows remote attackers to modify SQL state...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now