2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1240Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-1241Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-1242Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-1243Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2004-2228Mozilla Firefox before 1.0 is installed with world-writable permissions on Mac OS X, which allows local users to gain pr...
CVE-2004-2233Unknown "front page vulnerability with Moodle servers" for Moodle before 1.3.2 has unknown impact and attack vectors.
CVE-2004-2417Format string vulnerability in smtp.c for smtp.proxy 1.1.3 and earlier allows remote attackers to execute arbitrary code...
CVE-2004-2428Abczone.it WWWguestbook 1.1 stores db/dbase.mdb under the web document root with insufficient access control, which allo...
CVE-2004-2222Directory traversal vulnerability in index.php in FsPHPGallery before 1.2 allows remote attackers to list arbitrary dire...
CVE-2004-2223FsPHPGallery before 1.2 allows remote attackers to cause a denial of service via an image with a large size attribute, w...
CVE-2004-0561Format string vulnerability in the log routine for gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a deni...
CVE-2004-0560Integer overflow in gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly exec...
CVE-2004-2224Appfoundry Message Foundry 2.75 .0003 allows remote attackers to cause a denial of service (crash) via an HTTP GET reque...
CVE-2004-1585Flash Messaging 5.2.0g (rev 1.1.2) and earlier allows remote attackers to cause a denial of service (application crash) ...
CVE-2004-1104Microsoft Internet Explorer 6.0 SP2 allows remote attackers to spoof a legitimate URL in the status bar and conduct a ph...
CVE-2004-1586Flash Messaging clients can ignore disconnecting commands such as "shutdown" from the Flash Messaging Server 5.2.0g (rev...
CVE-2004-2012The systrace_exit function in the systrace utility for NetBSD-current and 2.0 before April 16, 2004, and certain FreeBSD...
CVE-2004-1589Cross-site scripting (XSS) vulnerability in GoSmart Message Board allows remote attackers to execute inject web script o...
CVE-2004-2221Buffer overflow in SoftCart.exe in Mercantec SoftCart 4.00b allows remote attackers to execute arbitrary code via a long...
CVE-2004-2416Buffer overflow in the logging component of CCProxy allows remote attackers to execute arbitrary code via a long HTTP GE...
CVE-2004-0555Buffer overflow in (1) queue.c and (2) queued.c in queue before 1.30.1 may allow remote attackers to execute arbitrary c...
CVE-2004-1572AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, whi...
CVE-2004-2188Cross-site scripting (XSS) vulnerability in DMXReady Site Chassis Manager allows remote attackers to inject arbitrary we...
CVE-2004-1583Directory traversal vulnerability in the FTP server in TriDComm 1.3 and earlier allows remote attackers to read or write...
CVE-2004-1584CRLF injection vulnerability in wp-login.php in WordPress 1.2 allows remote attackers to perform HTTP Response Splitting...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now