2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0251Cross-site scripting (XSS) vulnerability in rxgoogle.cgi allows remote attackers to execute arbitrary script as other us...
CVE-2004-0250SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the ...
CVE-2004-0249PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie's PXL variable t...
CVE-2004-0248Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other user...
CVE-2004-0247The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exceptio...
CVE-2004-0246Multiple PHP remote file inclusion vulnerabilities in (1) fonctions.lib.php, (2) derniers_commentaires.php, and (3) admi...
CVE-2004-0245Web Crossing 4.x and 5.x allows remote attackers to cause a denial of service (crash) by sending a HTTP POST request wit...
CVE-2004-0244Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allo...
CVE-2004-0243AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct...
CVE-2004-0242X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) ...
CVE-2004-0241X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2...
CVE-2004-0240Directory traversal vulnerability in X-Cart 3.4.3 allows remote attackers to view arbitrary files via a .. (dot dot) in ...
CVE-2004-0239SQL injection vulnerability in showphoto.php in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain unauth...
CVE-2004-0238Multiple buffer overflows in Overkill (0verkill) 0.15pre3 might allow local users to execute arbitrary code in the clien...
CVE-2004-0237Directory traversal vulnerability in index.php in Aprox PHP Portal allows remote attackers to read arbitrary files via a...
CVE-2004-0236SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the pas...
CVE-2004-0415Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portio...
CVE-2004-0112The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly ...
CVE-2004-0203Cross-site scripting (XSS) vulnerability in Outlook Web Access for Exchange Server 5.5 Service Pack 4 allows remote atta...
CVE-2004-0771Buffer overflow in the extract_one function from lhext.c in LHA may allow attackers to execute arbitrary code via a long...
CVE-2004-0744The TCP/IP Networking component in Mac OS X before 10.3.5 allows remote attackers to cause a denial of service (memory a...
CVE-2004-0743Safari in Mac OS X before 10.3.5, after sending form data using the POST method, may re-send the data to a GET method UR...
CVE-2004-0361The Javascript engine in Safari 1.2 and earlier allows remote attackers to cause a denial of service (segmentation fault...
CVE-2004-0360Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vecto...
CVE-2004-0359Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to exec...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now