2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0972The lvmcreate_initrd script in the lvm package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating sys...
CVE-2004-0966The (1) autopoint and (2) gettextize scripts in the GNU gettext package 1.14 and later versions, as used in Trustix Secu...
CVE-2004-0965stmkfont in HP-UX B.11.00 through B.11.23 relies on the user-specified PATH when executing certain commands, which allow...
CVE-2004-0848Buffer overflow in Microsoft Office XP allows remote attackers to execute arbitrary code via a link with a URL file loca...
CVE-2004-1131Multiple buffer overflows in the enable command for SCO OpenServer 5.0.6 and 5.0.7 allow local users to execute arbitrar...
CVE-2004-0936RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global he...
CVE-2004-0884The (1) libsasl and (2) libsasl2 libraries in Cyrus-SASL 2.1.18 and earlier trust the SASL_PATH environment variable to ...
CVE-2004-0930The ms_fnmatch function in Samba 3.0.4 and 3.0.7 and possibly other versions allows remote authenticated users to cause ...
CVE-2004-0882Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute ...
CVE-2004-0881getmail 4.x before 4.2.0, and other versions before 3.2.5, when run as root, allows local users to write files in arbitr...
CVE-2004-0886Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or me...
CVE-2004-0880getmail 4.x before 4.2.0, when run as root, allows local users to overwrite arbitrary files via a symlink attack on an m...
CVE-2004-0889Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to ca...
CVE-2004-0888Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphic...
CVE-2004-0891Buffer overflow in the MSN protocol handler for gaim 0.79 to 1.0.1 allows remote attackers to cause a denial of service ...
CVE-2004-0887SUSE Linux Enterprise Server 9 on the S/390 platform does not properly handle a certain privileged instruction, which al...
CVE-2004-0903Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release,...
CVE-2004-0902Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbir...
CVE-2004-0916Directory traversal vulnerability in cabextract before 1.1 allows remote attackers to overwrite arbitrary files via a ca...
CVE-2004-0892Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 (which is included in Small Business Server 2000 and Small Busi...
CVE-2004-0921AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenti...
CVE-2004-0918The asn_parse_header function (asn1.c) in the SNMP module for Squid Web Proxy Cache before 2.4.STABLE7 allows remote att...
CVE-2004-0923CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local us...
CVE-2004-0922AFP Server on Mac OS X 10.3.x to 10.3.5, under certain conditions, does not properly set the guest group ID, which cause...
CVE-2004-0917The default installation of Vignette Application Portal installs the diagnostic utility without authentication requireme...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now