2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0939changepassword.cgi in Neoteris Instant Virtual Extranet (IVE) 3.x and 4.x, with LDAP authentication or NT domain authent...
CVE-2004-0940HIGH7.8Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI ...
CVE-2004-0981Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to execute arbitrary cod...
CVE-2004-0982Buffer overflow in the getauthfromURL function in httpget.c in mpg123 pre0.59s and mpg123 0.59r could allow remote attac...
CVE-2004-0941Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute ar...
CVE-2004-0975The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows lo...
CVE-2004-0976Multiple scripts in the perl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local us...
CVE-2004-0977The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attac...
CVE-2004-0978Heap-based buffer overflow in the Hrtbeat.ocx (Heartbeat) ActiveX control for Internet Explorer 5.01 through 6, when use...
CVE-2004-0974The netatalk package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users t...
CVE-2004-0980Format string vulnerability in ez-ipupdate.c for ez-ipupdate 3.0.10 through 3.0.11b8, when running in daemon mode with c...
CVE-2004-0942Apache webserver 2.0.52 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an HTTP G...
CVE-2004-0971The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Secure Linux 1.5 through 2.1, and possibly other oper...
CVE-2004-0972The lvmcreate_initrd script in the lvm package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating sys...
CVE-2004-0967The (1) pj-gs.sh, (2) ps2epsi, (3) pv.sh, and (4) sysvlp.sh scripts in the ESP Ghostscript (espgs) package in Trustix Se...
CVE-2004-0968The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary ...
CVE-2004-0969The groffer script in the Groff package 1.18 and later versions, as used in Trustix Secure Linux 1.5 through 2.1, and po...
CVE-2004-0964Buffer overflow in Zinf 2.2.1 on Windows, and other older versions for Linux, allows remote attackers or local users to ...
CVE-2004-0963Buffer overflow in Microsoft Word 2002 (10.6612.6714) SP3, and possibly other versions, allows remote attackers to cause...
CVE-2004-0965stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allow...
CVE-2004-0966The (1) autopoint and (2) gettextize scripts in the GNU gettext package 1.14 and later versions, as used in Trustix Secu...
CVE-2004-0957Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes ...
CVE-2004-0960FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specif...
CVE-2004-0950NetOp Host before 7.65 build 2004278 allows remote attackers to obtain sensitive hostname, username and local IP address...
CVE-2004-0961Memory leak in FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (memory exhaustion) via a se...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now