2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1499Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers ...
CVE-2004-1904Buffer overflow in ascontrol.dll in Panda ActiveScan 5.0 allows remote attackers to execute arbitrary code via the Inter...
CVE-2004-1501The webmail service in 602 Lan Suite 2004.0.04.0909 and earlier allows remote attackers to cause a denial of service (CP...
CVE-2004-1502The Telnet proxy in 602 Lan Suite 2004.0.04.0909 and earlier allows remote attackers to cause a denial of service (socke...
CVE-2004-1503Integer overflow in the InitialDirContext in Java Runtime Environment (JRE) 1.4.2, 1.5.0 and possibly other versions all...
CVE-2004-1504The displaycontent function in config.php for Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to gain sen...
CVE-2004-1505Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read...
CVE-2004-1506Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar allow remote attackers to inject arbitrary web script...
CVE-2004-1507CRLF injection vulnerability in login.php in WebCalendar allows remote attackers to inject CRLF sequences via the return...
CVE-2004-1508init.php in WebCalendar allows remote attackers to execute arbitrary local PHP scripts via the user_inc parameter.
CVE-2004-1509validate.php in WebCalendar allows remote attackers to gain sensitive information via an invalid encoded_login parameter...
CVE-2004-1910rufsi.dll in Symantec Virus Detection allows remote attackers to cause a denial of service (crash) via a long string to ...
CVE-2004-1511Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute ar...
CVE-2004-1512Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute...
CVE-2004-151304WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inj...
CVE-2004-151404WebServer 1.42 allows remote attackers to cause a denial of service (fail to restart properly) via an HTTP request for...
CVE-2004-1515SQL injection vulnerability in (1) ttlast.php and (2) last10.php in vBulletin 3.0.x allows remote attackers to execute a...
CVE-2004-1516CRLF injection vulnerability in index.php in phpWebSite 0.9.3-4 allows remote attackers to perform HTTP Response Splitti...
CVE-2004-1517Zone Labs IMsecure and IMsecure Pro before 1.5 allow remote attackers to bypass Active Link Filtering via an instant mes...
CVE-2004-1518SQL injection vulnerability in follow.php in Phorum 5.0.12 and earlier allows remote authenticated users to execute arbi...
CVE-2004-1519SQL injection vulnerability in bug.php in phpBugTracker 0.9.1 allows remote attackers to execute arbitrary SQL commands ...
CVE-2004-1520Stack-based buffer overflow in IPSwitch IMail 8.13 allows remote authenticated users to execute arbitrary code via a lon...
CVE-2004-1521Eudora 6.2.0.14 does not issue a warning when a user forwards an e-mail message that contains base64 or quoted-printable...
CVE-2004-1522Format string vulnerability in Army Men RTS 1.0 allows remote attackers to cause a denial of service (application crash)...
CVE-2004-2439The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote att...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now