2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-0254——Cross-site scripting (XSS) vulnerability in Discuz! Board 2.x and 3.x allows remote attackers to execute arbitrary scrip...
CVE-2004-0255——Xlight 1.52, with log to screen enabled, allows remote attackers to cause a denial of service by requesting a long direc...
CVE-2004-0256——GNU libtool before 1.5.2, during compile time, allows local users to overwrite arbitrary files via a symlink attack on l...
CVE-2004-0257——OpenBSD 3.4 and NetBSD 1.6 and 1.6.1 allow remote attackers to cause a denial of service (crash) by sending an IPv6 pack...
CVE-2004-0258——Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise a...
CVE-2004-0259——The check_referer() function in Formmail.php 5.0 and earlier allows remote attackers to bypass access restrictions via a...
CVE-2004-0260——The AddToMailingList function in CactuSoft CactuShop 5.0 Lite contains a backdoor that allows remote attackers to delete...
CVE-2004-0261——oj.cgi in OpenJournal 2.0 through 2.0.5 allows remote attackers to bypass authentication and access the control panel vi...
CVE-2004-0262——Stack-based buffer overflow in The Palace 3.5 and earlier client allows remote attackers to execute arbitrary code via a...
CVE-2004-0263——PHP 4.3.4 and earlier in Apache 1.x and 2.x (mod_php) can leak global variables between virtual hosts that are handled b...
CVE-2004-0264——palmhttpd for PalmOS allows remote attackers to cause a denial of service (crash) by establishing two simultaneous HTTP ...
CVE-2004-0265——Cross-site scripting (XSS) vulnerability in modules.php for Php-Nuke 6.x-7.1.0 allows remote attackers to execute arbitr...
CVE-2004-0743——Safari in Mac OS X before 10.3.5, after sending form data using the POST method, may re-send the data to a GET method UR...
CVE-2004-0744——The TCP/IP Networking component in Mac OS X before 10.3.5 allows remote attackers to cause a denial of service (memory a...
CVE-2004-0266——SQL injection vulnerability in the "public message" capability (public_message) for Php-Nuke 6.x to 7.1.0 allows remote ...
CVE-2004-0267——The (1) inoregupdate, (2) uniftest, or (3) unimove scripts in eTrust InoculateIT for Linux 6.0 allow local users to over...
CVE-2004-0269——SQL injection vulnerability in PHP-Nuke 6.9 and earlier, and possibly 7.x, allows remote attackers to inject arbitrary S...
CVE-2004-0270——libclamav in Clam AntiVirus 0.65 allows remote attackers to cause a denial of service (crash) via a uuencoded e-mail mes...
CVE-2004-0271——Multiple cross-site scripting vulnerabilities (XSS) in MaxWebPortal allow remote attackers to execute arbitrary web scri...
CVE-2004-0272——SQL injection vulnerability in MaxWebPortal allows remote attackers to inject arbitrary SQL code and gain sensitive info...
CVE-2004-0273——Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote at...
CVE-2004-0274——Share.mod in Eggheads Eggdrop IRC bot 1.6.10 through 1.6.15 can mistakenly assign STAT_OFFERED status to a bot that is n...
CVE-2004-0275——SQL injection vulnerability in calendar_download.php in BosDates 3.2 and earlier allows remote attackers to obtain sensi...
CVE-2004-0276——The get_real_string function in Monkey HTTP Daemon (monkeyd) 0.8.1 and earlier allows remote attackers to cause a denial...
CVE-2004-0277——Format string vulnerability in Dream FTP 1.02 allows remote attackers to cause a denial of service (crash) and possibly ...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now