2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0457 | — | — | 0.5% | Sep 28, 2004 | The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows loc... |
| CVE-2004-0699 | — | — | 5.9% | Sep 28, 2004 | Heap-based buffer overflow in ASN.1 decoding library in Check Point VPN-1 products, when Aggressive Mode IKE is implemen... |
| CVE-2004-0163 | — | — | 1.6% | Sep 28, 2004 | Sygate Secure Enterprise (SSE) 3.5MR3 and earlier does not change the key used to encrypt data, which allows remote atta... |
| CVE-2004-0408 | — | — | 3.3% | Sep 28, 2004 | Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary co... |
| CVE-2004-0200 | — | — | 49.0% | Sep 28, 2004 | Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlu... |
| CVE-2004-0693 | — | — | 2.9% | Sep 28, 2004 | The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application cr... |
| CVE-2004-1698 | — | — | 3.2% | Sep 24, 2004 | The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of s... |
| CVE-2004-1694 | — | — | 1.8% | Sep 21, 2004 | Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, wh... |
| CVE-2004-1378 | — | — | 2.4% | Sep 21, 2004 | The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and ... |
| CVE-2004-1699 | — | — | 8.1% | Sep 21, 2004 | SettingsBase.php in Pinnacle ShowCenter 1.51 allows remote attackers to cause a denial of service (web interface errors)... |
| CVE-2004-1697 | — | — | 1.5% | Sep 21, 2004 | The "Forgot your Password" link in Computer Associates (CA) Unicenter Management Portal 2.0 and 3.1 displays different e... |
| CVE-2004-1696 | — | — | 7.6% | Sep 21, 2004 | EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to cause a denial of service (application crash) via... |
| CVE-2004-1695 | — | — | 10.1% | Sep 20, 2004 | EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administrati... |
| CVE-2004-1693 | — | — | 3.0% | Sep 18, 2004 | PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrar... |
| CVE-2004-1692 | — | — | 1.8% | Sep 18, 2004 | Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary w... |
| CVE-2004-1691 | — | — | 3.6% | Sep 18, 2004 | The Web Server in DNS4Me 3.0.0.4 allows remote attackers to cause a denial of service (CPU consumption and crash) via a ... |
| CVE-2004-1690 | — | — | 1.4% | Sep 18, 2004 | Cross-site scripting (XSS) vulnerability in the Web Server in DNS4Me 3.0.0.4 allows remote attackers to execute arbitrar... |
| CVE-2004-0534 | — | — | 1.2% | Sep 17, 2004 | Cross-site scripting (XSS) vulnerability in Business Objects InfoView 5.1.4 through 5.1.8 for WebIntelligence 2.7.0 thro... |
| CVE-2004-0869 | — | — | 14.8% | Sep 16, 2004 | Internet Explorer does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a sec... |
| CVE-2004-0866 | — | — | 10.1% | Sep 16, 2004 | Internet Explorer 6.0 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, ... |
| CVE-2004-1379 | — | — | 4.0% | Sep 16, 2004 | Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to e... |
| CVE-2004-0801 | — | — | 4.3% | Sep 16, 2004 | Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUP... |
| CVE-2004-0809 | — | — | 15.5% | Sep 16, 2004 | The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process cras... |
| CVE-2004-1687 | — | — | 2.4% | Sep 16, 2004 | CRLF injection vulnerability in down.asp for Snitz Forums 2000 3.4.04 allows remote attackers to perform HTTP Response S... |
| CVE-2004-1688 | — | — | 3.6% | Sep 16, 2004 | Pigeon Server 3.02.0143 and earlier allows remote attackers to cause a denial of service (infinite loop and CPU consumpt... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now