2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0448——Format string vulnerability in the log function for jftpgw 0.13.4 and earlier allows remote authenticated users to execu...
CVE-2004-0451——Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Prot...
CVE-2004-0454——Buffer overflow in the msg function for rlpr daemon (rlprd) 2.04 allows local users to execute arbitrary code.
CVE-2004-0455——Buffer overflow in cgi.c in www-sql before 0.5.7 allows local users to execute arbitrary code via a web page that is pro...
CVE-2004-0604——The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (cra...
CVE-2004-0393——Format string vulnerability in the msg function for rlpr daemon (rlprd) 2.0.4 allows remote attackers to execute arbitra...
CVE-2004-0395——The xatitv program in the gatos package does not properly drop root privileges when the configuration file does not exis...
CVE-2004-0456——Stack-based buffer overflow in pavuk 0.9pl28, 0.9pl27, and possibly other versions allows remote web sites to execute ar...
CVE-2004-0616——The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obta...
CVE-2004-0615——Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router run...
CVE-2004-0614——osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote ...
CVE-2004-0613——osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP reques...
CVE-2004-0612——The Mobile Code filter in ZoneAlarm Pro 5.0.590.015 does not filter mobile code within an SSL encrypted session, which c...
CVE-2004-0611——Web-Based Administration in Netgear FVS318 VPN Router allows remote attackers to cause a denial of service (no new conne...
CVE-2004-0610——The Web administration interface in Microsoft MN-500 Wireless Router allows remote attackers to cause a denial of servic...
CVE-2004-0609——rssh 2.0 through 2.1.x expands command line arguments before entering a chroot jail, which allows remote authenticated u...
CVE-2004-0608——The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier, ...
CVE-2004-0607——The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, wh...
CVE-2004-0590——FreeS/WAN 1.x and 2.x, and other related products including superfreeswan 1.x, openswan 1.x before 1.0.6, openswan 2.x b...
CVE-2004-0635——The SNMP dissector in Ethereal 0.8.15 through 0.10.4 allows remote attackers to cause a denial of service (process crash...
CVE-2004-0634——The SMB SID snooping capability in Ethereal 0.9.15 to 0.10.4 allows remote attackers to cause a denial of service (proce...
CVE-2004-0633——The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abor...
CVE-2004-0628——Stack-based buffer overflow in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to cause a denial of service (...
CVE-2004-0627——The check_scramble_323 function in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to bypass authentication v...
CVE-2004-0626——The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now