2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2130 | — | — | 6.5% | Dec 23, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in privmsg.php in phpBB 2.0.6 allow remote attackers to execute arbi... |
| CVE-2004-0646 | — | — | 7.1% | Dec 23, 2004 | Buffer overflow in the WriteToLog function for JRun 3.0 through 4.0 web server connectors, such as (1) mod_jrun and (2) ... |
| CVE-2004-0973 | — | — | — | Dec 23, 2004 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0457. Reason: This candidate is a reservation ... |
| CVE-2004-0685 | — | — | 0.5% | Dec 23, 2004 | Certain USB drivers in the Linux 2.4 kernel use the copy_to_user function on uninitialized structures, which could allow... |
| CVE-2004-0998 | — | — | 5.5% | Dec 23, 2004 | Format string vulnerability in telnetd-ssl 0.17 and earlier allows remote attackers to execute arbitrary code. |
| CVE-2004-0955 | — | — | — | Dec 23, 2004 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0599. Reason: This candidate is a reservation ... |
| CVE-2004-0954 | — | — | — | Dec 23, 2004 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0597. Reason: This candidate is a reservation ... |
| CVE-2004-0510 | — | — | 1.5% | Dec 23, 2004 | Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attacke... |
| CVE-2004-0511 | — | — | 1.0% | Dec 23, 2004 | Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow ... |
| CVE-2004-1305 | — | — | 62.4% | Dec 23, 2004 | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Window... |
| CVE-2004-1336 | — | — | 0.4% | Dec 23, 2004 | The xdvizilla script in tetex-bin 2.0.2 creates temporary files with predictable file names, which allows local users to... |
| CVE-2004-1337 | — | — | 0.4% | Dec 23, 2004 | The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a proc... |
| CVE-2004-1338 | — | — | 1.2% | Dec 23, 2004 | The triggers in Oracle 9i and 10g allow local users to gain privileges by using a sequence of partially privileged actio... |
| CVE-2004-1339 | — | — | 1.5% | Dec 23, 2004 | SQL injection vulnerability in the (1) MDSYS.SDO_GEOM_TRIG_INS1 and (2) MDSYS.SDO_LRS_TRIG_INS default triggers in Oracl... |
| CVE-2004-1361 | — | — | 19.9% | Dec 23, 2004 | Integer underflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows 2003 allo... |
| CVE-2004-0875 | — | — | 1.3% | Dec 23, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Phpgroupware (aka webdistro) 0.9.16.002 and earlier allow remote ... |
| CVE-2004-0873 | — | — | 1.3% | Dec 23, 2004 | Apple iChat AV 2.1, AV 2.0, and 1.0.1 allows remote attackers to execute arbitrary programs via a "link" that references... |
| CVE-2004-0868 | — | — | — | Dec 23, 2004 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0866. Reason: This candidate is a duplicate of... |
| CVE-2004-0867 | — | — | 17.2% | Dec 23, 2004 | Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, ... |
| CVE-2004-1778 | — | — | 0.4% | Dec 22, 2004 | Skype 0.92.0.12 and 1.0.0.1 for Linux, and possibly other versions, creates the /usr/share/skype/lang directory with wor... |
| CVE-2004-1307 | — | — | 6.3% | Dec 21, 2004 | Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execu... |
| CVE-2004-0452 | — | — | 0.4% | Dec 21, 2004 | Race condition in the rmtree function in the File::Path module in Perl 5.6.1 and 5.8.4 sets read/write permissions for t... |
| CVE-2004-1326 | — | — | 1.1% | Dec 20, 2004 | Buffer overflow in dxterm in Ultrix 4.5 allows local users to execute arbitrary code via a long -setup parameter. |
| CVE-2004-1329 | — | — | 3.3% | Dec 20, 2004 | Untrusted execution path vulnerability in the diag commands (1) lsmcode, (2) diag_exec, (3) invscout, and (4) invscoutd ... |
| CVE-2004-0852 | — | — | 3.2% | Dec 20, 2004 | Buffer overflow in htget 0.93 allows remote attackers to execute arbitrary code via a crafted URL. |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now