2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0448 | — | — | 4.3% | Dec 6, 2004 | Format string vulnerability in the log function for jftpgw 0.13.4 and earlier allows remote authenticated users to execu... |
| CVE-2004-0451 | — | — | 4.4% | Dec 6, 2004 | Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Prot... |
| CVE-2004-0454 | — | — | 0.7% | Dec 6, 2004 | Buffer overflow in the msg function for rlpr daemon (rlprd) 2.04 allows local users to execute arbitrary code. |
| CVE-2004-0455 | — | — | 0.5% | Dec 6, 2004 | Buffer overflow in cgi.c in www-sql before 0.5.7 allows local users to execute arbitrary code via a web page that is pro... |
| CVE-2004-0604 | — | — | 1.8% | Dec 6, 2004 | The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (cra... |
| CVE-2004-0393 | — | — | 17.4% | Dec 6, 2004 | Format string vulnerability in the msg function for rlpr daemon (rlprd) 2.0.4 allows remote attackers to execute arbitra... |
| CVE-2004-0395 | — | — | 0.4% | Dec 6, 2004 | The xatitv program in the gatos package does not properly drop root privileges when the configuration file does not exis... |
| CVE-2004-0456 | — | — | 2.9% | Dec 6, 2004 | Stack-based buffer overflow in pavuk 0.9pl28, 0.9pl27, and possibly other versions allows remote web sites to execute ar... |
| CVE-2004-0616 | — | — | 3.0% | Dec 6, 2004 | The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obta... |
| CVE-2004-0615 | — | — | 2.4% | Dec 6, 2004 | Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router run... |
| CVE-2004-0614 | — | — | 1.2% | Dec 6, 2004 | osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote ... |
| CVE-2004-0613 | — | — | 9.9% | Dec 6, 2004 | osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP reques... |
| CVE-2004-0612 | — | — | 1.3% | Dec 6, 2004 | The Mobile Code filter in ZoneAlarm Pro 5.0.590.015 does not filter mobile code within an SSL encrypted session, which c... |
| CVE-2004-0611 | — | — | 1.6% | Dec 6, 2004 | Web-Based Administration in Netgear FVS318 VPN Router allows remote attackers to cause a denial of service (no new conne... |
| CVE-2004-0610 | — | — | 14.8% | Dec 6, 2004 | The Web administration interface in Microsoft MN-500 Wireless Router allows remote attackers to cause a denial of servic... |
| CVE-2004-0609 | — | — | 1.4% | Dec 6, 2004 | rssh 2.0 through 2.1.x expands command line arguments before entering a chroot jail, which allows remote authenticated u... |
| CVE-2004-0608 | — | — | 73.5% | Dec 6, 2004 | The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier, ... |
| CVE-2004-0607 | — | — | 5.4% | Dec 6, 2004 | The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, wh... |
| CVE-2004-0590 | — | — | 2.8% | Dec 6, 2004 | FreeS/WAN 1.x and 2.x, and other related products including superfreeswan 1.x, openswan 1.x before 1.0.6, openswan 2.x b... |
| CVE-2004-0635 | — | — | 5.3% | Dec 6, 2004 | The SNMP dissector in Ethereal 0.8.15 through 0.10.4 allows remote attackers to cause a denial of service (process crash... |
| CVE-2004-0634 | — | — | 5.3% | Dec 6, 2004 | The SMB SID snooping capability in Ethereal 0.9.15 to 0.10.4 allows remote attackers to cause a denial of service (proce... |
| CVE-2004-0633 | — | — | 18.0% | Dec 6, 2004 | The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abor... |
| CVE-2004-0628 | — | — | 7.8% | Dec 6, 2004 | Stack-based buffer overflow in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to cause a denial of service (... |
| CVE-2004-0627 | — | — | 69.6% | Dec 6, 2004 | The check_scramble_323 function in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to bypass authentication v... |
| CVE-2004-0626 | — | — | 2.8% | Dec 6, 2004 | The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, ... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now