2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1474Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 36...
CVE-2004-1475Multiple stack-based buffer overflows in xine-lib 1-rc2 through 1-rc5 allow attackers to execute arbitrary code via (1) ...
CVE-2004-1476Stack-based buffer overflow in the VideoCD (VCD) code in xine-lib 1-rc2 through 1-rc5, as derived from libcdio, allows a...
CVE-2004-1477Cross-site scripting (XSS) vulnerability in the Management Console in JRun 4.0 allows remote attackers to execute arbitr...
CVE-2004-1478JRun 4.0 does not properly generate and handle the JSESSIONID, which allows remote attackers to perform a session fixati...
CVE-2004-1479Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0928. Reason: This candidate is a duplicate of...
CVE-2004-1480Unknown vulnerability in the management station in HP StorageWorks Command View XP 1.8B and earlier allows remote attack...
CVE-2004-1481Integer overflow in pnen3260.dll in RealPlayer 8 through 10.5 (6.0.12.1040) and earlier, and RealOne Player 1 or 2 on Wi...
CVE-2004-1482The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass a...
CVE-2004-1483Multiple unknown vulnerabilities in the ActiveX and HTML file browsers in Symantec Clientless VPN Gateway 4400 Series 5....
CVE-2004-1484Format string vulnerability in the _msg function in error.c in socat 1.4.0.3 and earlier, when used as an HTTP proxy cli...
CVE-2004-1485Buffer overflow in the TFTP client in InetUtils 1.4.2 allows remote malicious DNS servers to execute arbitrary code via ...
CVE-2004-1486Unknown vulnerability in Serviceguard A.11.13 through A.11.16.00 and Cluster Object Manager A.01.03 and B.01.04 through ...
CVE-2004-1867Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary we...
CVE-2004-2118Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via a GET request with a long filename, pos...
CVE-2004-1489Opera 7.54 and earlier does not properly limit an applet's access to internal Java packages from Sun, which allows remot...
CVE-2004-1490Opera 7.54 and earlier allows remote attackers to spoof file types in the download dialog via dots and non-breaking spac...
CVE-2004-1491Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitr...
CVE-2004-1492Master of Orion III 1.2.5 and earlier allows remote attackers to cause a denial of service (game exit) via a data packet...
CVE-2004-1493Master of Orion III 1.2.5 and earlier allows remote attackers to cause a denial of service (server crash) via multiple c...
CVE-2004-1494Buffer overflow in the Screen Fetch option in XDICT 2002 through 2005 allows remote attackers to cause a denial of servi...
CVE-2004-1495The Repair Archive command in WinRAR 3.40 allows remote attackers to cause a denial of service (application crash) via a...
CVE-2004-1496Directory traversal vulnerability in Web Forums Server 1.6 and 2.0 Power Pack allows remote attackers to read arbitrary ...
CVE-2004-1497Web Forums Server 1.6 and 2.0 Power Pack stores passwords in plaintext in the Username.ini file, which allows local user...
CVE-2004-2414Novell NetWare 6.5 SP 1.1, when installing or upgrading using the Overlay CDs and performing a custom installation with ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now