2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1579index.php in CubeCart 2.0.1 allows remote attackers to gain sensitive information via an HTTP request with an invalid ca...
CVE-2004-1575The XML parser in Xerces-C++ 2.5.0 allows remote attackers to cause a denial of service (CPU consumption) via XML attrib...
CVE-2004-1376Directory traversal vulnerability in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote malicious FTP servers ...
CVE-2004-1316Heap-based buffer overflow in MSG_UnEscapeSearchUrl in nsNNTPProtocol.cpp for Mozilla 1.7.3 and earlier allows remote at...
CVE-2004-1062Multiple cross-site scripting (XSS) vulnerabilities in ViewCVS 0.9.2 allow remote attackers to inject arbitrary HTML and...
CVE-2004-1377The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwri...
CVE-2004-1317Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attack...
CVE-2004-0512Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow ...
CVE-2004-0511Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow ...
CVE-2004-0510Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attacke...
CVE-2004-0998Format string vulnerability in telnetd-ssl 0.17 and earlier allows remote attackers to execute arbitrary code.
CVE-2004-0973Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0457. Reason: This candidate is a reservation ...
CVE-2004-0955Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0599. Reason: This candidate is a reservation ...
CVE-2004-0954Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0597. Reason: This candidate is a reservation ...
CVE-2004-0875Multiple cross-site scripting (XSS) vulnerabilities in Phpgroupware (aka webdistro) 0.9.16.002 and earlier allow remote ...
CVE-2004-0873Apple iChat AV 2.1, AV 2.0, and 1.0.1 allows remote attackers to execute arbitrary programs via a "link" that references...
CVE-2004-0868Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0866. Reason: This candidate is a duplicate of...
CVE-2004-0867Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, ...
CVE-2004-0850Star before 1.5_alpha46 does not drop the effective user ID (euid) before calling external programs, which could allow l...
CVE-2004-0849Integer overflow in the asn_decode_string() function defined in asn1.c in radiusd for GNU Radius 1.1 and 1.2 before 1.2....
CVE-2004-0842Internet Explorer 6.0 SP1 and earlier, and possibly other versions, allows remote attackers to cause a denial of service...
CVE-2004-0841Internet Explorer 6.x allows remote attackers to install arbitrary programs via mousedown events that call the Popup.sho...
CVE-2004-0834Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) m...
CVE-2004-0833Sendmail before 8.12.3 on Debian GNU/Linux, when using sasl and sasl-bin, uses a Sendmail configuration script with a fi...
CVE-2004-0816HIGH7.5Integer underflow in the firewall logging rules for iptables in Linux before 2.6.8 allows remote attackers to cause a de...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now