2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-1087 | — | — | 0.4% | Dec 2, 2004 | Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which could... |
| CVE-2004-1086 | — | — | 3.4% | Dec 2, 2004 | Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a crafte... |
| CVE-2004-1085 | — | — | 0.3% | Dec 2, 2004 | Human Interface Toolbox (HIToolBox) for Apple Mac 0S X 10.3.6 allows local users to exit applications via the force-quit... |
| CVE-2004-1352 | — | — | 0.5% | Dec 1, 2004 | Buffer overflow in the ping daemon of Sun Solaris 7 through 9 may allow local users to execute arbitrary code. |
| CVE-2004-1771 | — | — | 1.4% | Nov 30, 2004 | Scalable OGo (SOGo) 1.0 allows remote authenticated users to bypass intended permissions and view private appointments o... |
| CVE-2004-0308 | — | — | 1.7% | Nov 24, 2004 | Unknown vulnerability in Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco O... |
| CVE-2004-0268 | — | — | 3.4% | Nov 23, 2004 | Multiple buffer overflows in EvolutionX 3921 and 3935 allow remote attackers to cause a denial of service (hang) via (1)... |
| CVE-2004-0597 | — | — | 82.5% | Nov 23, 2004 | Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute a... |
| CVE-2004-0598 | — | — | 6.1% | Nov 23, 2004 | The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (applicati... |
| CVE-2004-0599 | — | — | 6.2% | Nov 23, 2004 | Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) pr... |
| CVE-2004-0636 | — | — | 66.0% | Nov 23, 2004 | Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.... |
| CVE-2004-0081 | — | — | 7.2% | Nov 23, 2004 | OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a den... |
| CVE-2004-0112 | — | — | 10.4% | Nov 23, 2004 | The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly ... |
| CVE-2004-0203 | — | — | 21.0% | Nov 23, 2004 | Cross-site scripting (XSS) vulnerability in Outlook Web Access for Exchange Server 5.5 Service Pack 4 allows remote atta... |
| CVE-2004-0243 | — | — | 1.7% | Nov 23, 2004 | AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct... |
| CVE-2004-0244 | — | — | 1.1% | Nov 23, 2004 | Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allo... |
| CVE-2004-0245 | — | — | 3.2% | Nov 23, 2004 | Web Crossing 4.x and 5.x allows remote attackers to cause a denial of service (crash) by sending a HTTP POST request wit... |
| CVE-2004-0246 | — | — | 4.4% | Nov 23, 2004 | Multiple PHP remote file inclusion vulnerabilities in (1) fonctions.lib.php, (2) derniers_commentaires.php, and (3) admi... |
| CVE-2004-0247 | — | — | 3.4% | Nov 23, 2004 | The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exceptio... |
| CVE-2004-0248 | — | — | 1.5% | Nov 23, 2004 | Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other user... |
| CVE-2004-0249 | — | — | 4.9% | Nov 23, 2004 | PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie's PXL variable t... |
| CVE-2004-0250 | — | — | 3.2% | Nov 23, 2004 | SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the ... |
| CVE-2004-0251 | — | — | 2.0% | Nov 23, 2004 | Cross-site scripting (XSS) vulnerability in rxgoogle.cgi allows remote attackers to execute arbitrary script as other us... |
| CVE-2004-0252 | — | — | 1.6% | Nov 23, 2004 | TYPSoft FTP Server 1.10 allows remote attackers to cause a denial of service (CPU consumption) via an empty USER name. |
| CVE-2004-0253 | — | — | 2.0% | Nov 23, 2004 | IBM Cloudscape 5.1 running jdk 1.4.2_03 allows remote attackers to execute arbitrary programs or cause a denial of servi... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now