2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-2434——Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with...
CVE-2004-2435——Cross-site scripting (XSS) vulnerability in PeopleSoft Human Resources Management System (HRMS) 7.0, when "web enabled" ...
CVE-2004-2436——Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndA...
CVE-2004-2437——SQL injection vulnerability in PHP-Fusion 4.01 allows remote attackers to execute arbitrary SQL commands via the rowstar...
CVE-2004-2438——Cross-site scripting (XSS) vulnerability in PHP-Fusion 4.01 allows remote attackers to inject arbitrary web script or HT...
CVE-2004-2439——The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote att...
CVE-2004-2440——Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (...
CVE-2004-2441——Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related...
CVE-2004-2442——Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows S...
CVE-2004-2443——Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie se...
CVE-2004-2444——Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote attackers to inject arbitrary web script...
CVE-2004-2445——Directory traversal vulnerability in index.php in Jaws 0.3 BETA allows remote attackers to view arbitrary files via a .....
CVE-2004-2446——Directory traversal vulnerability in 1st Class Mail Server 4.01 allows remote attackers to read arbitrary files via a "....
CVE-2004-2447——Cross-site scripting (XSS) vulnerability in 1st Class Mail Server 4.01 allows remote attackers to inject arbitrary web s...
CVE-2004-2448——S-Mart Shopping Cart or RediCart 3.9.5b stores smart.cfg under the web document root with insufficient access control, w...
CVE-2004-2449——Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier allows remote attackers to cause a denial ...
CVE-2004-2450——The client and server for Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier report sensitive...
CVE-2004-2451——Roger Wilco 1.4.1.6 and earlier, or Roger Wilco Base Station 0.30a or earlier, allows remote attackers to send audio to ...
CVE-2004-2452——Unknown vulnerability in Hitachi Cosminexus Portal Framework 01-00, 01-01, 01-02, 02-01, 02-02, 02-03, and other version...
CVE-2004-2453——Unknown vulnerability in Tutti Nova 0.10 through 0.12 (Beta) and 0.9.4, when register_globals is enabled, has unknown im...
CVE-2004-2454——aMSN 0.90 for Microsoft Windows allows local users to obtain sensitive information such as hashed passwords from (1) hot...
CVE-2004-2455——Sweex Wireless Broadband Router/Accesspoint 802.11g (LC000060) allows remote attackers to obtain sensitive information a...
CVE-2004-2456——SQL injection vulnerability in index.php in miniBB 1.7f and earlier allows remote attackers to execute arbitrary SQL com...
CVE-2004-2457——Unspecified vulnerability in 3Com OfficeConnect ADSL 11g Router allows remote attackers to cause a denial of service (cr...
CVE-2004-2458——Open WebMail 2.30 and earlier, when use_syshomedir is disabled or create_syshomedir is enabled, creates new directories ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now