2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-1602——ProFTPD 1.2.x, including 1.2.8 and 1.2.10, responds in a different amount of time when a given username exists, which al...
CVE-2004-1605——SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=...
CVE-2004-1700——Cross-site scripting (XSS) vulnerability in SettingsBase.php in Pinnacle ShowCenter 1.51 build 121 allows remote attacke...
CVE-2004-1594——Cross-site scripting (XSS) vulnerability in FuseTalk 4.0 allows remote attackers to execute arbitrary web script via an ...
CVE-2004-1597——RIM Blackberry 7230 running RIM Blackberry OS 3.7 SP1 allows remote attackers to cause a denial of service (device reboo...
CVE-2004-1596——The 3COM Wireless router 3CRADSL72 running Boot Code 1.3d allows remote attackers to gain sensitive information such as ...
CVE-2004-1595——Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field.
CVE-2004-1598——Adobe Acrobat and Acrobat Reader 6.0 allow remote attackers to read arbitrary files via a PDF file that contains an embe...
CVE-2004-1673——accountsettings_add.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allow remote...
CVE-2004-1672——attachment.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attacke...
CVE-2004-1671——Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to gain sensitiv...
CVE-2004-1674——viewaction.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attacke...
CVE-2004-0928——The Microsoft IIS Connector in JRun 4.0 and Macromedia ColdFusion MX 6.0, 6.1, and 6.1 J2EE allows remote attackers to b...
CVE-2004-1349——gzip before 1.3 in Solaris 8, when called with the -f or -force flags, will change the permissions of files that are har...
CVE-2004-1604——cPanel 9.9.1-RELEASE-3 allows remote authenticated users to chmod arbitrary files via a symlink attack on the _private d...
CVE-2004-0558——The Internet Printing Protocol (IPP) implementation in CUPS before 1.1.21 allows remote attackers to cause a denial of s...
CVE-2004-0629——Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versio...
CVE-2004-0642——Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) libra...
CVE-2004-0643——Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users...
CVE-2004-0644——The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote a...
CVE-2004-0689HIGH7.1KDE before 3.3.0 does not properly handle when certain symbolic links point to "stale" locations, which could allow loca...
CVE-2004-0690——The DCOPServer in KDE 3.2.3 and earlier allows local users to gain unauthorized access via a symlink attack on DCOP file...
CVE-2004-0691——Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers ...
CVE-2004-0692——The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application cr...
CVE-2004-0693——The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application cr...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now