2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-1602 | — | — | 30.7% | Oct 15, 2004 | ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which al... |
| CVE-2004-1605 | — | — | 2.1% | Oct 14, 2004 | SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=... |
| CVE-2004-1700 | — | — | 1.3% | Oct 14, 2004 | Cross-site scripting (XSS) vulnerability in SettingsBase.php in Pinnacle ShowCenter 1.51 build 121 allows remote attacke... |
| CVE-2004-1596 | — | — | 2.6% | Oct 13, 2004 | The 3COM Wireless router 3CRADSL72 running Boot Code 1.3d allows remote attackers to gain sensitive information such as ... |
| CVE-2004-1595 | — | — | 59.3% | Oct 13, 2004 | Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field. |
| CVE-2004-1597 | — | — | 2.0% | Oct 13, 2004 | RIM Blackberry 7230 running RIM Blackberry OS 3.7 SP1 allows remote attackers to cause a denial of service (device reboo... |
| CVE-2004-1594 | — | — | 1.3% | Oct 13, 2004 | Cross-site scripting (XSS) vulnerability in FuseTalk 4.0 allows remote attackers to execute arbitrary web script via an ... |
| CVE-2004-1674 | — | — | 1.5% | Oct 12, 2004 | viewaction.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attacke... |
| CVE-2004-1672 | — | — | 1.7% | Oct 12, 2004 | attachment.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attacke... |
| CVE-2004-1671 | — | — | 1.6% | Oct 12, 2004 | Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to gain sensitiv... |
| CVE-2004-1673 | — | — | 1.7% | Oct 12, 2004 | accountsettings_add.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allow remote... |
| CVE-2004-1598 | — | — | 2.8% | Oct 12, 2004 | Adobe Acrobat and Acrobat Reader 6.0 allow remote attackers to read arbitrary files via a PDF file that contains an embe... |
| CVE-2004-0928 | — | — | 4.1% | Oct 5, 2004 | The Microsoft IIS Connector in JRun 4.0 and Macromedia ColdFusion MX 6.0, 6.1, and 6.1 J2EE allows remote attackers to b... |
| CVE-2004-1349 | — | — | 0.6% | Oct 4, 2004 | gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are har... |
| CVE-2004-1604 | — | — | 1.1% | Sep 30, 2004 | cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private d... |
| CVE-2004-0558 | — | — | 26.8% | Sep 28, 2004 | The Internet Printing Protocol (IPP) implementation in CUPS before 1.1.21 allows remote attackers to cause a denial of s... |
| CVE-2004-0573 | — | — | 42.3% | Sep 28, 2004 | Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites ... |
| CVE-2004-0593 | — | — | 1.6% | Sep 28, 2004 | Sygate Enforcer 3.5MR1 and earlier passes broadcast traffic before authentication, which could allow remote attackers to... |
| CVE-2004-0200 | — | — | 49.0% | Sep 28, 2004 | Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlu... |
| CVE-2004-0163 | — | — | 1.6% | Sep 28, 2004 | Sygate Secure Enterprise (SSE) 3.5MR3 and earlier does not change the key used to encrypt data, which allows remote atta... |
| CVE-2004-0644 | — | — | 5.6% | Sep 28, 2004 | The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote a... |
| CVE-2004-0693 | — | — | 2.9% | Sep 28, 2004 | The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application cr... |
| CVE-2004-0500 | — | — | 5.0% | Sep 28, 2004 | Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to c... |
| CVE-2004-0690 | — | — | 0.5% | Sep 28, 2004 | The DCOPServer in KDE 3.2.3 and earlier allows local users to gain unauthorized access via a symlink attack on DCOP file... |
| CVE-2004-0689 | HIGH | 7.1 | 0.4% | Sep 28, 2004 | KDE before 3.3.0 does not properly handle when certain symbolic links point to "stale" locations, which could allow loca... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now