2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0927——ServerAdmin in Mac OS X 10.2.8 through 10.3.5 uses the same example self-signed certificate on each system, which allows...
CVE-2004-0923——CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local us...
CVE-2004-0924——NetInfo Manager on Mac OS X 10.3.x through 10.3.5, after an initial root login, reports the root account as being disabl...
CVE-2004-0921——AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenti...
CVE-2004-0922——AFP Server on Mac OS X 10.3.x to 10.3.5, under certain conditions, does not properly set the guest group ID, which cause...
CVE-2004-0918——The asn_parse_header function (asn1.c) in the SNMP module for Squid Web Proxy Cache before 2.4.STABLE7 allows remote att...
CVE-2004-0925——Postfix on Mac OS X 10.3.x through 10.3.5, with SMTPD AUTH enabled, does not properly clear the username between authent...
CVE-2004-0917——The default installation of Vignette Application Portal installs the diagnostic utility without authentication requireme...
CVE-2004-0926——Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attackers to execute arbi...
CVE-2004-1340——Debian GNU/Linux 3.0 installs the libpam-radius-auth package with the pam_radius_auth.conf set to be world-readable, whi...
CVE-2004-1057——Multiple drivers in Linux kernel 2.4.19 and earlier do not properly mark memory with the VM_IO flag, which causes incorr...
CVE-2004-1184——The EPSF pipe support in enscript 1.6.3 allows remote attackers or local users to execute arbitrary commands via shell m...
CVE-2004-1185——Enscript 1.6.3 does not sanitize filenames, which allows remote attackers or local users to execute arbitrary commands v...
CVE-2004-0897——The Indexing Service for Microsoft Windows XP and Server 2003 does not properly validate the length of a message, which ...
CVE-2004-1039——The NFS mountd service on SCO UnixWare 7.1.1, 7.1.3, 7.1.4, and 7.0.1, and possibly other versions, when run from inetd,...
CVE-2004-0991——Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or ...
CVE-2004-1063——PHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multithreaded Unix webserver, allows local users ...
CVE-2004-0139——Unknown vulnerability in the bsd.a kernel networking for SGI IRIX 6.5.22 through 6.5.25, and possibly earlier versions, ...
CVE-2004-1058——Race condition in Linux kernel 2.6 allows local users to read the environment variables of another process that is still...
CVE-2004-1064——The safe mode checks in PHP 4.x to 4.3.9 and PHP 5.x to 5.0.2 truncate the file path before passing the data to the real...
CVE-2004-1065——Buffer overflow in the exif_read_data function in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to e...
CVE-2004-1056——Direct Rendering Manager (DRM) driver in Linux kernel 2.6 does not properly check the DMA lock, which could allow remote...
CVE-2004-1054——Untrusted execution path vulnerability in invscout in IBM AIX 5.1.0, 5.2.0, and 5.3.0 allows local users to gain privile...
CVE-2004-1066——The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 through 5.3, and (2) linprocfs on FreeBSD 5.x through 5.3, do not p...
CVE-2004-0900——The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the l...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now