2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2025 | — | — | 1.1% | Dec 31, 2004 | SQL injection vulnerability in application_top.php for Zen Cart 1.1.3 before patch 2 may allow remote attackers to execu... |
| CVE-2004-2024 | — | — | 1.1% | Dec 31, 2004 | The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functi... |
| CVE-2004-2050 | — | — | 0.4% | Dec 31, 2004 | eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allow local users to gain privileges by pressing CTRL-S... |
| CVE-2004-2182 | — | — | 1.2% | Dec 31, 2004 | Session fixation vulnerability in Macromedia JRun 4.0 allows remote attackers to hijack user sessions by pre-setting the... |
| CVE-2004-2125 | — | — | 0.4% | Dec 31, 2004 | Buffer overflow in blackd.exe for BlackICE PC Protection 3.6 and other versions before 3.6.ccb, with application protect... |
| CVE-2004-1506 | — | — | 1.3% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar allow remote attackers to inject arbitrary web script... |
| CVE-2004-1486 | — | — | 3.7% | Dec 31, 2004 | Unknown vulnerability in Serviceguard A.11.13 through A.11.16.00 and Cluster Object Manager A.01.03 and B.01.04 through ... |
| CVE-2004-1470 | — | — | 2.4% | Dec 31, 2004 | CRLF injection vulnerability in SnipSnap 0.5.2a, and other versions before 1.0b1, allows remote attackers to perform HTT... |
| CVE-2004-1448 | — | — | 1.7% | Dec 31, 2004 | Jetbox One 2.0.8 and possibly other versions allow remote attackers with Author privileges in the IMAGES module to uploa... |
| CVE-2004-1427 | — | — | 1.7% | Dec 31, 2004 | PHP remote file inclusion vulnerability in main.inc in KorWeblog 1.6.2-cvs and earlier allows remote attackers to execut... |
| CVE-2004-1407 | — | — | 1.6% | Dec 31, 2004 | Multiple directory traversal vulnerabilities in singapore Image Gallery Web Application 0.9.10 allow remote attackers to... |
| CVE-2004-1510 | — | — | 1.8% | Dec 31, 2004 | WebCalendar allows remote attackers to gain privileges by modifying critical parameters to (1) view_entry.php or (2) upc... |
| CVE-2004-1879 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in PHPKIT 1.6.03 allows allows remote attackers to inject arbitrary web script ... |
| CVE-2004-1750 | — | — | 1.7% | Dec 31, 2004 | RealVNC 4.0 and earlier allows remote attackers to cause a denial of service (crash) via a large number of connections t... |
| CVE-2004-1753 | — | — | 1.6% | Dec 31, 2004 | The Apple Java plugin, as used in Netscape 7.1 and 7.2, Mozilla 1.7.2, and Firefox 0.9.3 on MacOS X 10.3.5, when tabbed ... |
| CVE-2004-1767 | — | — | 0.4% | Dec 31, 2004 | The kernel in Solaris 2.6, 7, 8, and 9 allows local users to gain privileges by loading arbitrary loadable kernel module... |
| CVE-2004-1553 | — | — | 2.4% | Dec 31, 2004 | SQL injection vulnerability in aspWebAlbum allows remote attackers to execute arbitrary SQL statements via (1) the usern... |
| CVE-2004-1747 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in NetworkEverywhere NR041 running firmware 1.2 Release 03 allows remote attack... |
| CVE-2004-1748 | — | — | 0.8% | Dec 31, 2004 | NtRegmon before 6.12 allows local users to cause a denial of service (crash), while NtRegmon is running, via invalid poi... |
| CVE-2004-1530 | — | — | 1.3% | Dec 31, 2004 | SQL injection vulnerability in the Event Calendar module 2.13 for PHP-Nuke allows remote attackers to execute arbitrary ... |
| CVE-2004-1402 | — | — | 3.3% | Dec 31, 2004 | SQL injection vulnerability in iWebNegar allows remote attackers to execute arbitrary SQL commands via (1) the string pa... |
| CVE-2004-2059 | — | — | 8.8% | Dec 31, 2004 | Multiple cross-site scripting vulnerabilities in ASPRunner 2.4 allow remote attackers to inject arbitrary web script or ... |
| CVE-2004-1540 | — | — | 6.6% | Dec 31, 2004 | ZyXEL Prestige 623, 650, and 652 HW Routers, and possibly other versions, with HTTP Remote Administration enabled, does ... |
| CVE-2004-2099 | — | — | 4.3% | Dec 31, 2004 | Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (ser... |
| CVE-2004-2459 | — | — | 0.6% | Dec 31, 2004 | Unknown vulnerability in gnubiff 1.2.0 and earlier allows local users to obtain passwords, related to the password table... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now