2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1494Buffer overflow in the Screen Fetch option in XDICT 2002 through 2005 allows remote attackers to cause a denial of servi...
CVE-2004-1510WebCalendar allows remote attackers to gain privileges by modifying critical parameters to (1) view_entry.php or (2) upc...
CVE-2004-2279Cross-site scripting (XSS) vulnerability in Invision Power Board 1.3 Final allows remote attackers to execute arbitrary ...
CVE-2004-2312Buffer overflow in GNU make for IBM AIX 4.3.3, when installed setgid, allows local users to gain privileges via a long C...
CVE-2004-1166CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute...
CVE-2004-2349Multiple SQL injection vulnerabilities in Tunez before 1.20-pre2 allow remote attackers to execute arbitrary SQL queries...
CVE-2004-1140Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (application hang) and possibly fill ...
CVE-2004-1238Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-2148Unknown local vulnerability in the "change user" feature of Slava Astashonok Fprobe 1.0.5 and earlier has unknown impact...
CVE-2004-2129SurfNOW 2.2 allows remote attackers to cause a denial of service (crash) via a series of long HTTP GET requests, possibl...
CVE-2004-2199Cross-site scripting (XSS) vulnerability in DUware DUclassified 4.0 allows remote attackers to inject arbitrary web scri...
CVE-2004-1173Internet Explorer 6 allows remote attackers to bypass the popup blocker via the document object model (DOM) methods in t...
CVE-2004-2137Outlook Express 6.0, when sending multipart e-mail messages using the "Break apart messages larger than" setting, leaks ...
CVE-2004-1241Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-2271Buffer overflow in MiniShare 1.4.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET req...
CVE-2004-2280Buffer overflow in IBM Lotus Notes 6.5.x before 6.5.3 and 6.0.x before 6.0.5 allows remote attackers to cause a denial o...
CVE-2004-1439Buffer overflow in BlackJumboDog 3.x allows remote attackers to execute arbitrary code via long FTP commands such as (1)...
CVE-2004-1509validate.php in WebCalendar allows remote attackers to gain sensitive information via an invalid encoded_login parameter...
CVE-2004-1899The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST...
CVE-2004-1182hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate an...
CVE-2004-2072Cross-site scripting (XSS) vulnerability in index.php for Mambo Open Source 4.6, and possibly earlier versions, allows r...
CVE-2004-1907The Web Filtering functionality in Kerio Personal Firewall (KPF) 4.0.13 allows remote attackers to cause a denial of ser...
CVE-2004-2104Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to obtain sensitive server information, includi...
CVE-2004-1186Multiple buffer overflows in enscript 1.6.3 allow remote attackers or local users to cause a denial of service (applicat...
CVE-2004-2218SQL injection vulnerability in pmwh.php in PHPMyWebHosting 0.3.4 and earlier allows remote attackers to modify SQL state...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now