2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0699——Heap-based buffer overflow in ASN.1 decoding library in Check Point VPN-1 products, when Aggressive Mode IKE is implemen...
CVE-2004-0745——LHA 1.14 and earlier allows attackers to execute arbitrary commands via a directory with shell metacharacters in its nam...
CVE-2004-0408——Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary co...
CVE-2004-0200——Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlu...
CVE-2004-0500——Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to c...
CVE-2004-0458HIGH7.5mah-jong before 1.6.2 allows remote attackers to cause a denial of service (server crash) via a missing argument, which ...
CVE-2004-0457——The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows loc...
CVE-2004-0163——Sygate Secure Enterprise (SSE) 3.5MR3 and earlier does not change the key used to encrypt data, which allows remote atta...
CVE-2004-0593——Sygate Enforcer 3.5MR1 and earlier passes broadcast traffic before authentication, which could allow remote attackers to...
CVE-2004-0573——Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites ...
CVE-2004-1698——The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of s...
CVE-2004-1696——EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to cause a denial of service (application crash) via...
CVE-2004-1694——Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, wh...
CVE-2004-1697——The "Forgot your Password" link in Computer Associates (CA) Unicenter Management Portal 2.0 and 3.1 displays different e...
CVE-2004-1378——The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and ...
CVE-2004-1699——SettingsBase.php in Pinnacle ShowCenter 1.51 allows remote attackers to cause a denial of service (web interface errors)...
CVE-2004-1695——EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administrati...
CVE-2004-1692——Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary w...
CVE-2004-1691——The Web Server in DNS4Me 3.0.0.4 allows remote attackers to cause a denial of service (CPU consumption and crash) via a ...
CVE-2004-1693——PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrar...
CVE-2004-1690——Cross-site scripting (XSS) vulnerability in the Web Server in DNS4Me 3.0.0.4 allows remote attackers to execute arbitrar...
CVE-2004-0534——Cross-site scripting (XSS) vulnerability in Business Objects InfoView 5.1.4 through 5.1.8 for WebIntelligence 2.7.0 thro...
CVE-2004-1379——Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to e...
CVE-2004-1687——CRLF injection vulnerability in down.asp for Snitz Forums 2000 3.4.04 allows remote attackers to perform HTTP Response S...
CVE-2004-0801——Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUP...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now