2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-0752——OpenOffice (OOo) 1.1.2 creates predictable directory names with insecure permissions during startup, which may allow loc...
CVE-2004-0753——The BMP image processor for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a deni...
CVE-2004-0754——Integer overflow in Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary...
CVE-2004-0755——The FileStore capability in CGI::Session for Ruby before 1.8.1, and possibly PStore, creates files with insecure permiss...
CVE-2004-0768——libpng 1.2.5 and earlier does not properly calculate certain buffer offsets, which could allow remote attackers to execu...
CVE-2004-0778——CVS 1.11.x before 1.11.17, and 1.12.x before 1.12.9, allows remote attackers to determine the existence of arbitrary fil...
CVE-2004-0781——Cross-site scripting (XSS) vulnerability in list.cgi in the Icecast internal web server (icecast-server) 1.3.12 and earl...
CVE-2004-0782——Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gd...
CVE-2004-0783——Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, ...
CVE-2004-0784——The smiley theme functionality in Gaim before 0.82 allows remote attackers to execute arbitrary commands via shell metac...
CVE-2004-0785——Multiple buffer overflows in Gaim before 0.82 allow remote attackers to cause a denial of service and possibly execute a...
CVE-2004-0786——The IPv6 URI parsing routines in the apr-util library for Apache 2.0.50 and earlier allow remote attackers to cause a de...
CVE-2004-0787——Cross-site scripting (XSS) vulnerability in the web frontend in OpenCA 0.9.1-8 and earlier, and 0.9.2 RC6 and earlier, a...
CVE-2004-0788——Integer overflow in the ICO image decoder for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attacke...
CVE-2004-0793——The calendar program in bsdmainutils 6.0 through 6.0.14 does not drop root privileges when executed with the -a flag, wh...
CVE-2004-0794——Multiple signal handler race conditions in lukemftpd (aka tnftpd before 20040810) allow remote authenticated attackers t...
CVE-2004-0795——DB2 8.1 remote command server (DB2RCMD.EXE) executes the db2rcmdc.exe program as the db2admin administrator, which allow...
CVE-2004-0796——SpamAssassin 2.5x, and 2.6x before 2.64, allows remote attackers to cause a denial of service via certain malformed mess...
CVE-2004-0797——The error handling in the (1) inflate and (2) inflateBack functions in ZLib compression library 1.2.x allows local users...
CVE-2004-0798——Buffer overflow in the _maincfgret.cgi script for Ipswitch WhatsUp Gold before 8.03 Hotfix 1 allows remote attackers to ...
CVE-2004-0799——The HTTP daemon in Ipswitch WhatsUp Gold 8.03 and 8.03 Hotfix 1 allows remote attackers to cause a denial of service (se...
CVE-2004-0162——Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME ...
CVE-2004-0161——Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME ...
CVE-2004-1619——Buffer overflow in Privateer's Bounty: Age of Sail II allows remote attackers to execute arbitrary code via a long nickn...
CVE-2004-1380——Firefox before 1.0 and Mozilla before 1.7.5 allows inactive (background) tabs to launch dialog boxes, which can allow re...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now