2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0408Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary co...
CVE-2004-0643Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users...
CVE-2004-0691Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers ...
CVE-2004-0692The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application cr...
CVE-2004-0642Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) libra...
CVE-2004-0699Heap-based buffer overflow in ASN.1 decoding library in Check Point VPN-1 products, when Aggressive Mode IKE is implemen...
CVE-2004-0458HIGH7.5mah-jong before 1.6.2 allows remote attackers to cause a denial of service (server crash) via a missing argument, which ...
CVE-2004-0457The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows loc...
CVE-2004-0745LHA 1.14 and earlier allows attackers to execute arbitrary commands via a directory with shell metacharacters in its nam...
CVE-2004-0629Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versio...
CVE-2004-1698The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of s...
CVE-2004-1697The "Forgot your Password" link in Computer Associates (CA) Unicenter Management Portal 2.0 and 3.1 displays different e...
CVE-2004-1378The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and ...
CVE-2004-1699SettingsBase.php in Pinnacle ShowCenter 1.51 allows remote attackers to cause a denial of service (web interface errors)...
CVE-2004-1696EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to cause a denial of service (application crash) via...
CVE-2004-1694Symantec ON Command CCM 5.4.x and iCommand 3.0.x has four default usernames and passwords, one of which is hardcoded, wh...
CVE-2004-1695EmuLive Server4 Commerce Edition Build 7560 allows remote attackers to bypass authentication for the remote administrati...
CVE-2004-1692Cross-site scripting (XSS) vulnerability in index.php in Mambo 4.5 (1.0.9) allows remote attackers to inject arbitrary w...
CVE-2004-1693PHP remote file inclusion vulnerability in Function.php in Mambo 4.5 (1.0.9) allows remote attackers to execute arbitrar...
CVE-2004-1691The Web Server in DNS4Me 3.0.0.4 allows remote attackers to cause a denial of service (CPU consumption and crash) via a ...
CVE-2004-1690Cross-site scripting (XSS) vulnerability in the Web Server in DNS4Me 3.0.0.4 allows remote attackers to execute arbitrar...
CVE-2004-0534Cross-site scripting (XSS) vulnerability in Business Objects InfoView 5.1.4 through 5.1.8 for WebIntelligence 2.7.0 thro...
CVE-2004-1688Pigeon Server 3.02.0143 and earlier allows remote attackers to cause a denial of service (infinite loop and CPU consumpt...
CVE-2004-0801Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUP...
CVE-2004-0809The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process cras...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now