2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-0295TsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a denial of service (CPU consumption) via an open id...
CVE-2004-0294YaBB 1 SP 1.3.1 displays different error messages when a user exists or not, which makes it easier for remote attackers ...
CVE-2004-0293Directory traversal vulnerability in ShopCartCGI 2.3 allows remote attackers to retrieve arbitrary files via a .. (dot d...
CVE-2004-0292Buffer overflow in KarjaSoft Sami HTTP Server 1.0.4 allows remote attackers to cause a denial of service (crash) and pos...
CVE-2004-0291SQL injection vulnerability in post.php for YaBB SE 1.5.4 and 1.5.5 allows remote attackers to obtain hashed passwords v...
CVE-2004-0290Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information...
CVE-2004-0289Buffer overflow in sdbscan in SignatureDB 0.1.1 allows local users to cause a denial of service (segmentation fault) via...
CVE-2004-0287Xlight FTP server 1.52 allows remote authenticated users to cause a denial of service (crash) via a RETR command with a ...
CVE-2004-0288Buffer overflow in the UdmDocToTextBuf function in mnoGoSearch 3.2.13 through 3.2.15 could allow remote attackers to exe...
CVE-2004-0286Buffer overflow in RobotFTP 1.0 and 2.0 beta 1 allows remote attackers to cause a denial of service (crash) and possibly...
CVE-2004-0284Microsoft Internet Explorer 6.0, Outlook 2002, and Outlook 2003 allow remote attackers to cause a denial of service (CPU...
CVE-2004-1331The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Sec...
CVE-2004-1315viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrase...
CVE-2004-0552Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device na...
CVE-2004-0959rfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP script with a certain ...
CVE-2004-0958php_variables.c in PHP before 5.0.2 allows remote attackers to read sensitive memory contents via (1) GET, (2) POST, or ...
CVE-2004-0938FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (server crash) by sending an Ascend-Send-Se...
CVE-2004-0920Symantec Norton AntiVirus 2004, and earlier versions, allows a virus or other malicious code to avoid detection or cause...
CVE-2004-0911telnetd for netkit 0.17 and earlier, and possibly other versions, on Debian GNU/Linux allows remote attackers to cause a...
CVE-2004-0910Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0815. Reason: This candidate is a reservation ...
CVE-2004-0885The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location c...
CVE-2004-0846Unknown vulnerability in Microsoft Excel 2000, 2002, 2001 for Mac, and v.X for Mac allows remote attackers to execute ar...
CVE-2004-0845Internet Explorer 5.01, 5.5, and 6 does not properly cache SSL content, which allows remote attackers to obtain informat...
CVE-2004-0844Internet Explorer 6 on Double Byte Character Set (DBCS) systems allows remote attackers to alter displayed address bars ...
CVE-2004-0843Internet Explorer 5.5 and 6 does not properly handle plug-in navigation, which allows remote attackers to alter displaye...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now