2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-2635——An ActiveX control for McAfee Security Installer Control System 4.0.0.81 allows remote attackers to access the Windows r...
CVE-2004-2636——TinyWeb 1.9 allows remote attackers to read source code of scripts via "/./" in the URL.
CVE-2004-2637——The NAT implementation in Zonet ZSR1104WE Wireless Router Runtime Code Version 2.41 converts IP addresses of inbound con...
CVE-2004-2638——The Admin Access With Levels plugin in osCommerce 1.5.1 allows remote attackers to access files in the "admin/" director...
CVE-2004-2639——Unspecified vulnerability in Journalness 3.0.7 and earlier allows remote attackers to create or modify posts via unknown...
CVE-2004-2640——Directory traversal vulnerability in lstat.cgi in LinuxStat before 2.3.1 allows remote attackers to read arbitrary files...
CVE-2004-2641——Unspecified vulnerability in Sun Fire 3800/4800/4810/6800, Sun Fire V1280, and Netra 1280 allows remote attackers to cau...
CVE-2004-2642——Yeemp 0.9.9 and earlier does not properly encrypt inbound files, which allows remote attackers to spoof the identity of ...
CVE-2004-2643——Directory traversal vulnerability in Microsoft cabarc allows remote attackers to overwrite files via "../" sequences in ...
CVE-2004-2644——Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "...
CVE-2004-2645——Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "...
CVE-2004-2646——The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (unca...
CVE-2004-2647——Free Web Chat 2.0 allows remote attackers to cause a denial of service (CPU consumption) via multiple connections from t...
CVE-2004-2648——FreezeX 1.00.100.0666 allows local users with administrator privileges to cause a denial of service (FreezeX application...
CVE-2004-2649——Eudora 6.1.0.6 allows remote attackers to obfuscate URLs displayed in the status bar by inserting a large number of char...
CVE-2004-2650——Spooler in Apache Foundation James 2.2.0 allows local users to cause a denial of service (memory consumption) by trigger...
CVE-2004-2651——Multiple cross-site scripting (XSS) vulnerabilities in YaCy before 0.32 allow remote attackers to inject arbitrary web s...
CVE-2004-2652——The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbo...
CVE-2004-2653——Unspecified vulnerability in PD9 Software MegaBBS 2.0 and 2.1 allows attackers to gain privileges via unknown vectors in...
CVE-2004-2654——The clientAbortBody function in client_side.c in Squid Web Proxy Cache before 2.6 STABLE6 allows remote attackers to cau...
CVE-2004-2655——rdesktop 1.3.1 with xscreensaver 4.14, and possibly other versions, when running on Fedora and possibly other platforms,...
CVE-2004-2656——Multiple cross-site scripting (XSS) vulnerabilities in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashc...
CVE-2004-2657——Mozilla Firefox 1.5.0.1, and possibly other versions, preserves some records of user activity even after uninstalling, w...
CVE-2004-2658——resmgr in SUSE CORE 9 does not properly identify terminal names, which allows local users to spoof terminals and login t...
CVE-2004-2659——Opera offers an Open button to verify that a user wishes to execute a downloaded file, which allows user-assisted remote...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now