2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0572Buffer overflow in the Windows Program Group Converter (grpconv.exe) may allow remote attackers to execute arbitrary cod...
CVE-2004-0574The Network News Transfer Protocol (NNTP) component of Microsoft Windows NT Server 4.0, Windows 2000 Server, Windows Ser...
CVE-2004-0911telnetd for netkit 0.17 and earlier, and possibly other versions, on Debian GNU/Linux allows remote attackers to cause a...
CVE-2004-0958php_variables.c in PHP before 5.0.2 allows remote attackers to read sensitive memory contents via (1) GET, (2) POST, or ...
CVE-2004-0959rfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP script with a certain ...
CVE-2004-0843Internet Explorer 5.5 and 6 does not properly handle plug-in navigation, which allows remote attackers to alter displaye...
CVE-2004-0815The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down ...
CVE-2004-0774RealNetworks Helix Universal Server 9.0.2 for Linux and 9.0.3 for Windows allows remote attackers to cause a denial of s...
CVE-2004-0804Vulnerability in tif_dirread.c for libtiff allows remote attackers to cause a denial of service (application crash) via ...
CVE-2004-0552Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device na...
CVE-2004-0575Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows S...
CVE-2004-0840The SMTP (Simple Mail Transfer Protocol) component of Microsoft Windows XP 64-bit Edition, Windows Server 2003, Windows ...
CVE-2004-0569The RPC Runtime Library for Microsoft Windows NT 4.0 allows remote attackers to read active memory or cause a denial of ...
CVE-2004-0208The Virtual DOS Machine (VDM) subsystem of Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 a...
CVE-2004-0837MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows attackers to cause a denial of service (crash or hang) via multi...
CVE-2004-0211The kernel for Microsoft Windows Server 2003 does not reset certain values in CPU data structures, which allows local us...
CVE-2004-0207"Shatter" style vulnerability in the Window Management application programming interface (API) for Microsoft Windows 98,...
CVE-2004-0216Integer overflow in the Install Engine (inseng.dll) for Internet Explorer 5.01, 5.5, and 6 allows remote attackers to ex...
CVE-2004-0836Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS...
CVE-2004-1121Apple Safari 1.0 through 1.2.3 allows remote attackers to spoof the URL displayed in the status bar via TABLE tags.
CVE-2004-1350Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow ...
CVE-2004-1639Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (appli...
CVE-2004-1636Heap-based buffer overflow in the WvTFTPServer::new_connection function in wvtftpserver.cc for WvTftp 0.9 allows remote ...
CVE-2004-1637The Hawking Technologies HAR11A modem/router allows remote attackers to obtain sensitive information by connecting to po...
CVE-2004-1634show_bug.cgi in Bugzilla 2.17.1 through 2.18rc2 and 2.19 from CVS, when using the insidergroup feature and exporting a b...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now