2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0357——Stack-based buffer overflows in SL Mail Pro 2.0.9 allow remote attackers to execute arbitrary code via (1) user.dll, (2)...
CVE-2004-0358——Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrar...
CVE-2004-0359——Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to exec...
CVE-2004-0360——Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vecto...
CVE-2004-0361——The Javascript engine in Safari 1.2 and earlier allows remote attackers to cause a denial of service (segmentation fault...
CVE-2004-0771——Buffer overflow in the extract_one function from lhext.c in LHA may allow attackers to execute arbitrary code via a long...
CVE-2004-0744——The TCP/IP Networking component in Mac OS X before 10.3.5 allows remote attackers to cause a denial of service (memory a...
CVE-2004-0743——Safari in Mac OS X before 10.3.5, after sending form data using the POST method, may re-send the data to a GET method UR...
CVE-2004-0636——Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5....
CVE-2004-0203——Cross-site scripting (XSS) vulnerability in Outlook Web Access for Exchange Server 5.5 Service Pack 4 allows remote atta...
CVE-2004-0079HIGH7.5The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a...
CVE-2004-0347——Cross-site scripting (XSS) vulnerability in delhomepage.cgi in NetScreen-SA 5000 Series running firmware 3.3 Patch 1 (bu...
CVE-2004-0597——Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute a...
CVE-2004-0598——The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (applicati...
CVE-2004-0599——Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) pr...
CVE-2004-0081——OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a den...
CVE-2004-0236——SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the pas...
CVE-2004-0112——The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly ...
CVE-2004-0237——Directory traversal vulnerability in index.php in Aprox PHP Portal allows remote attackers to read arbitrary files via a...
CVE-2004-0238——Multiple buffer overflows in Overkill (0verkill) 0.15pre3 might allow local users to execute arbitrary code in the clien...
CVE-2004-0239——SQL injection vulnerability in showphoto.php in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain unauth...
CVE-2004-0240——Directory traversal vulnerability in X-Cart 3.4.3 allows remote attackers to view arbitrary files via a .. (dot dot) in ...
CVE-2004-0241——X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2...
CVE-2004-0242——X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) ...
CVE-2004-0243——AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now