2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-0613——osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP reques...
CVE-2004-0614——osTicket trusts a hidden form field in the submit form to limit the upload size of a document, which could allow remote ...
CVE-2004-0615——Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router run...
CVE-2004-0616——The BT Voyager 2000 Wireless ADSL Router has a default public SNMP community name, which allows remote attackers to obta...
CVE-2004-0618——FreeBSD 5.1 for the Alpha processor allows local users to cause a denial of service (crash) via an execve system call wi...
CVE-2004-0619——Integer overflow in the ubsec_keysetup function for Linux Broadcom 5820 cryptonet driver allows local users to cause a d...
CVE-2004-0620——Cross-site scripting (XSS) vulnerability in (1) newreply.php or (2) newthread.php in vBulletin 3.0.1 allows remote attac...
CVE-2004-0621——admin.php in Newsletter ZWS allows remote attackers to gain administrative privileges via a list_user operation with the...
CVE-2004-0622——Apple Mac OS X 10.3.4, 10.4, 10.5, and possibly other versions does not properly clear memory for login (aka Loginwindow...
CVE-2004-0623——Format string vulnerability in misc.c in GNU GNATS 4.00 may allow remote attackers to execute arbitrary code via format ...
CVE-2004-0624——PHP remote file inclusion vulnerability in index.php for Artmedic links 5.0 (artmedic_links5) allows remote attackers to...
CVE-2004-0625——SQL injection vulnerability in Infinity WEB 1.0 allows remote attackers to bypass authentication and gain privileges via...
CVE-2004-0626——The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, ...
CVE-2004-0627——The check_scramble_323 function in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to bypass authentication v...
CVE-2004-0628——Stack-based buffer overflow in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to cause a denial of service (...
CVE-2004-0633——The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abor...
CVE-2004-0634——The SMB SID snooping capability in Ethereal 0.9.15 to 0.10.4 allows remote attackers to cause a denial of service (proce...
CVE-2004-0635——The SNMP dissector in Ethereal 0.8.15 through 0.10.4 allows remote attackers to cause a denial of service (process crash...
CVE-2004-0576——The radius daemon (radiusd) for GNU Radius 1.1, when compiled with the -enable-snmp option, allows remote attackers to c...
CVE-2004-0577——WinGate 5.2.3 build 901 and 6.0 beta 2 build 942, and other versions such as 5.0.5, allows remote attackers to read arbi...
CVE-2004-0578——WinGate 5.2.3 build 901 and 6.0 beta 2 build 942, and other versions such as 5.0.5, allows remote attackers to read arbi...
CVE-2004-1084——Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork content via HTTP req...
CVE-2004-1081——The Application Framework (AppKit) for Apple Mac OS X 10.2.8 and 10.3.6 does not properly restrict access to a secure te...
CVE-2004-1089——Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local us...
CVE-2004-1088——Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authenticati...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now