2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1325——The getItemInfoByAtom function in the ActiveX control for Microsoft Windows Media Player 9.0 returns a 0 if the file doe...
CVE-2004-1324——The Microsoft Windows Media Player 9.0 ActiveX control may allow remote attackers to execute arbitrary web script in the...
CVE-2004-1374——Multiple buffer overflows in NetBSD kernel may allow local users to execute arbitrary code and gain privileges.
CVE-2004-1768——The character converters in the Spamhunter and Language ID modules for Symantec Brightmail AntiSpam 6.0.1 before patch 1...
CVE-2004-1323——Multiple syscalls in the compat subsystem for NetBSD before 2.0 allow local users to cause a denial of service (kernel c...
CVE-2004-1145——Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScrip...
CVE-2004-1139——Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial...
CVE-2004-1322——Cisco Unity 2.x, 3.x, and 4.x, when integrated with Microsoft Exchange, has several hard coded usernames and passwords, ...
CVE-2004-1335——Memory leak in the ip_options_get function in the Linux kernel before 2.6.10 allows local users to cause a denial of ser...
CVE-2004-1321——The configuration backup in Asante FM2008 running firmware 1.06 stores the username and password in cleartext, which cou...
CVE-2004-1320——Asante FM2008 running firmware 1.06 is shipped with a default username and password, which could allow remote attackers ...
CVE-2004-1334——Integer overflow in the ip_options_get function in the Linux kernel before 2.6.10 allows local users to cause a denial o...
CVE-2004-1142——Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malfo...
CVE-2004-1333——Integer overflow in the vc_resize function in the Linux kernel 2.4 and 2.6 before 2.6.10 allows local users to cause a d...
CVE-2004-1319——The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by settin...
CVE-2004-1059——Multiple cross-site scripting (XSS) vulnerabilities in mnoGoSearch 3.2.26 and earlier allow remote attackers to inject a...
CVE-2004-1351——Unknown vulnerability in the rwho daemon (in.rwhod) for Solaris 7 through 9 allows remote attackers to execute arbitrary...
CVE-2004-0606——Cross-site scripting (XSS) vulnerability in Infoblox DNS One running firmware 2.4.0-8 and earlier allows remote attacker...
CVE-2004-0602——The binary compatibility mode for FreeBSD 4.x and 5.x does not properly handle certain Linux system calls, which could a...
CVE-2004-0468——Memory leak in Juniper JUNOS Packet Forwarding Engine (PFE) allows remote attackers to cause a denial of service (memory...
CVE-2004-0477——Unknown vulnerability in 3Com OfficeConnect Remote 812 ADSL Router allows remote attackers to bypass authentication via ...
CVE-2004-0480——Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via ...
CVE-2004-0603——gzexe in gzip 1.3.3 and earlier will execute an argument when the creation of a temp file fails instead of exiting the p...
CVE-2004-0496——Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a dif...
CVE-2004-0497——Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported fi...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now