2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0357 | — | — | 5.0% | Nov 23, 2004 | Stack-based buffer overflows in SL Mail Pro 2.0.9 allow remote attackers to execute arbitrary code via (1) user.dll, (2)... |
| CVE-2004-0358 | — | — | 4.2% | Nov 23, 2004 | Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrar... |
| CVE-2004-0359 | — | — | 5.6% | Nov 23, 2004 | Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to exec... |
| CVE-2004-0360 | — | — | 1.0% | Nov 23, 2004 | Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vecto... |
| CVE-2004-0361 | — | — | 7.0% | Nov 23, 2004 | The Javascript engine in Safari 1.2 and earlier allows remote attackers to cause a denial of service (segmentation fault... |
| CVE-2004-0771 | — | — | 18.8% | Nov 23, 2004 | Buffer overflow in the extract_one function from lhext.c in LHA may allow attackers to execute arbitrary code via a long... |
| CVE-2004-0744 | — | — | 1.6% | Nov 23, 2004 | The TCP/IP Networking component in Mac OS X before 10.3.5 allows remote attackers to cause a denial of service (memory a... |
| CVE-2004-0743 | — | — | 2.0% | Nov 23, 2004 | Safari in Mac OS X before 10.3.5, after sending form data using the POST method, may re-send the data to a GET method UR... |
| CVE-2004-0636 | — | — | 66.0% | Nov 23, 2004 | Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.... |
| CVE-2004-0203 | — | — | 21.0% | Nov 23, 2004 | Cross-site scripting (XSS) vulnerability in Outlook Web Access for Exchange Server 5.5 Service Pack 4 allows remote atta... |
| CVE-2004-0079 | HIGH | 7.5 | 9.5% | Nov 23, 2004 | The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a... |
| CVE-2004-0347 | — | — | 2.1% | Nov 23, 2004 | Cross-site scripting (XSS) vulnerability in delhomepage.cgi in NetScreen-SA 5000 Series running firmware 3.3 Patch 1 (bu... |
| CVE-2004-0597 | — | — | 82.5% | Nov 23, 2004 | Multiple buffer overflows in libpng 1.2.5 and earlier, as used in multiple products, allow remote attackers to execute a... |
| CVE-2004-0598 | — | — | 6.1% | Nov 23, 2004 | The png_handle_iCCP function in libpng 1.2.5 and earlier allows remote attackers to cause a denial of service (applicati... |
| CVE-2004-0599 | — | — | 6.2% | Nov 23, 2004 | Multiple integer overflows in the (1) png_read_png in pngread.c or (2) png_handle_sPLT functions in pngrutil.c or (3) pr... |
| CVE-2004-0081 | — | — | 7.2% | Nov 23, 2004 | OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a den... |
| CVE-2004-0236 | — | — | 2.2% | Nov 23, 2004 | SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the pas... |
| CVE-2004-0112 | — | — | 10.4% | Nov 23, 2004 | The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly ... |
| CVE-2004-0237 | — | — | 7.3% | Nov 23, 2004 | Directory traversal vulnerability in index.php in Aprox PHP Portal allows remote attackers to read arbitrary files via a... |
| CVE-2004-0238 | — | — | 5.2% | Nov 23, 2004 | Multiple buffer overflows in Overkill (0verkill) 0.15pre3 might allow local users to execute arbitrary code in the clien... |
| CVE-2004-0239 | — | — | 3.3% | Nov 23, 2004 | SQL injection vulnerability in showphoto.php in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain unauth... |
| CVE-2004-0240 | — | — | 1.5% | Nov 23, 2004 | Directory traversal vulnerability in X-Cart 3.4.3 allows remote attackers to view arbitrary files via a .. (dot dot) in ... |
| CVE-2004-0241 | — | — | 6.0% | Nov 23, 2004 | X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2... |
| CVE-2004-0242 | — | — | 6.9% | Nov 23, 2004 | X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) ... |
| CVE-2004-0243 | — | — | 1.7% | Nov 23, 2004 | AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now