2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2434 | — | — | 32.8% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with... |
| CVE-2004-2435 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in PeopleSoft Human Resources Management System (HRMS) 7.0, when "web enabled" ... |
| CVE-2004-2436 | — | — | 0.5% | Dec 31, 2004 | Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndA... |
| CVE-2004-2437 | — | — | 1.2% | Dec 31, 2004 | SQL injection vulnerability in PHP-Fusion 4.01 allows remote attackers to execute arbitrary SQL commands via the rowstar... |
| CVE-2004-2438 | — | — | 1.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HT... |
| CVE-2004-2439 | — | — | 2.2% | Dec 31, 2004 | The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote att... |
| CVE-2004-2440 | — | — | 0.3% | Dec 31, 2004 | Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (... |
| CVE-2004-2441 | — | — | 1.7% | Dec 31, 2004 | Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related... |
| CVE-2004-2442 | — | — | 10.6% | Dec 31, 2004 | Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows S... |
| CVE-2004-2443 | — | — | 8.8% | Dec 31, 2004 | Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie se... |
| CVE-2004-2444 | — | — | 4.2% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote attackers to inject arbitrary web script... |
| CVE-2004-2445 | — | — | 8.4% | Dec 31, 2004 | Directory traversal vulnerability in index.php in Jaws 0.3 BETA allows remote attackers to view arbitrary files via a ..... |
| CVE-2004-2446 | — | — | 2.0% | Dec 31, 2004 | Directory traversal vulnerability in 1st Class Mail Server 4.01 allows remote attackers to read arbitrary files via a ".... |
| CVE-2004-2447 | — | — | 2.7% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in 1st Class Mail Server 4.01 allows remote attackers to inject arbitrary web s... |
| CVE-2004-2448 | — | — | 1.4% | Dec 31, 2004 | S-Mart Shopping Cart or RediCart 3.9.5b stores smart.cfg under the web document root with insufficient access control, w... |
| CVE-2004-2449 | — | — | 5.7% | Dec 31, 2004 | Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier allows remote attackers to cause a denial ... |
| CVE-2004-2450 | — | — | 1.5% | Dec 31, 2004 | The client and server for Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier report sensitive... |
| CVE-2004-2451 | — | — | 2.3% | Dec 31, 2004 | Roger Wilco 1.4.1.6 and earlier, or Roger Wilco Base Station 0.30a or earlier, allows remote attackers to send audio to ... |
| CVE-2004-2452 | — | — | 1.5% | Dec 31, 2004 | Unknown vulnerability in Hitachi Cosminexus Portal Framework 01-00, 01-01, 01-02, 02-01, 02-02, 02-03, and other version... |
| CVE-2004-2453 | — | — | 1.7% | Dec 31, 2004 | Unknown vulnerability in Tutti Nova 0.10 through 0.12 (Beta) and 0.9.4, when register_globals is enabled, has unknown im... |
| CVE-2004-2454 | — | — | 0.4% | Dec 31, 2004 | aMSN 0.90 for Microsoft Windows allows local users to obtain sensitive information such as hashed passwords from (1) hot... |
| CVE-2004-2455 | — | — | 1.7% | Dec 31, 2004 | Sweex Wireless Broadband Router/Accesspoint 802.11g (LC000060) allows remote attackers to obtain sensitive information a... |
| CVE-2004-2456 | — | — | 2.6% | Dec 31, 2004 | SQL injection vulnerability in index.php in miniBB 1.7f and earlier allows remote attackers to execute arbitrary SQL com... |
| CVE-2004-2457 | — | — | 1.6% | Dec 31, 2004 | Unspecified vulnerability in 3Com OfficeConnect ADSL 11g Router allows remote attackers to cause a denial of service (cr... |
| CVE-2004-2458 | — | — | 1.4% | Dec 31, 2004 | Open WebMail 2.30 and earlier, when use_syshomedir is disabled or create_syshomedir is enabled, creates new directories ... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now