2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-2660——Memory leak in direct-io.c in Linux kernel 2.6.x before 2.6.10 allows local users to cause a denial of service (memory c...
CVE-2004-2661——Soft3304 04WebServer before 1.41 does not properly check file names, which allows remote attackers to obtain sensitive i...
CVE-2004-2662——Soft3304 04WebServer before 1.41 allows remote attackers to cause a denial of service (resource consumption or crash) vi...
CVE-2004-2663——The (1) SetDebugging and (2) RunEgatherer methods in IBM Access Support eGatherer ActiveX control 2.0.0.16 allow remote ...
CVE-2004-2664——John Lim ADOdb Library for PHP before 4.23 allows remote attackers to obtain sensitive information via direct requests t...
CVE-2004-2665——Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport software in HP-UX B.11.00, B.11.04,...
CVE-2004-2666——Mantis before 20041016 provides a complete Issue History (Bug History) in the web interface regardless of view_history_t...
CVE-2004-2667——Cross-site scripting (XSS) vulnerability in Lotus Domino 6.0.x before 6.0.4 and 6.5.x before 6.5.2 allows remote attacke...
CVE-2004-2668——SQL injection vulnerability in Interchange before 4.8.9 allows remote attackers to execute arbitrary SQL commands via un...
CVE-2004-2669——Multiple SQL injection vulnerabilities in Land Down Under (LDU) v701 allow remote attackers to execute arbitrary SQL com...
CVE-2004-2670——Multiple cross-site scripting (XSS) vulnerabilities in mod.php in eNdonesia 8.3 allow remote attackers to inject arbitra...
CVE-2004-2671——mod.php in eNdonesia 8.3 allows remote attackers to obtain sensitive information via certain direct requests, and certai...
CVE-2004-2672——Unspecified vulnerability in ArGoSoft FTP server before 1.4.2.2 allows attackers to upload .lnk files via unknown vector...
CVE-2004-2673——Multiple buffer overflows in ArGoSoft FTP Server before 1.4.1.6 allow remote authenticated users to cause a denial of se...
CVE-2004-2674——Directory traversal vulnerability in ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to determine t...
CVE-2004-2675——ArGoSoft FTP Server before 1.4.1.6 allows remote authenticated users to cause a denial of service (crash) via a SITE PAS...
CVE-2004-2676——The Spy Sweeper Enterprise Client (SpySweeperTray.exe) in WebRoot Spy Sweeper before 2.0 does not drop privileges when u...
CVE-2004-2677——Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to exe...
CVE-2004-2678——Unspecified vulnerability in HP Tru64 UNIX 5.1B PK2(BL22) and PK3(BL24), and 5.1A PK6(BL24), when using IPsec/IKE (Inter...
CVE-2004-2679——Check Point Firewall-1 4.1 up to NG AI R55 allows remote attackers to obtain potentially sensitive information by sendin...
CVE-2004-2680——mod_python (libapache2-mod-python) 3.1.4 and earlier does not properly handle when output filters process more than 1638...
CVE-2004-2681——PeerSec MatrixSSL before 1.1 caches session keys for an indefinitely long time, which might make it easier for remote at...
CVE-2004-2682——PeerSec MatrixSSL before 1.1 does not implement RSA blinding, which allows context-dependent attackers to obtain the ser...
CVE-2004-2683——Unspecified vulnerability in the %XML.Utils.SchemaServer class in InterSystems Cache' 5.0 allows attackers to access arb...
CVE-2004-2684——Unspecified vulnerability in the %template package in InterSystems Cache' 5.0 allows attackers to access certain files o...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now