2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0757——Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunde...
CVE-2004-0412——Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.
CVE-2004-0758——Mozilla 1.5 through 1.7 allows a CA certificate to be imported even when their DN is the same as that of the built-in CA...
CVE-2004-0487——A certain ActiveX control in Symantec Norton AntiVirus 2004 allows remote attackers to cause a denial of service (resour...
CVE-2004-0230——TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial o...
CVE-2004-0759——Mozilla before 1.7 allows remote web servers to read arbitrary files via Javascript that sets the value of an <input typ...
CVE-2004-0760——Mozilla allows remote attackers to cause Mozilla to open a URI as a different MIME type than expected via a null charact...
CVE-2004-0761——Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote attackers to use certain redirect seque...
CVE-2004-0762——Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to install arbitrary extensio...
CVE-2004-0394——A "potential" buffer overflow exists in the panic() function in Linux 2.4.x, although it may not be exploitable due to t...
CVE-2004-0763——Mozilla Firefox 0.9.1 and 0.9.2 allows remote web sites to spoof certificates of trusted web sites via redirects and Jav...
CVE-2004-0764——Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to hijack the user interface ...
CVE-2004-0765——The cert_TestHostName function in Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, only checks the ho...
CVE-2004-0134——cpr (libcpr) in SGI IRIX before 6.5.25 allows local users to gain privileges by loading a user provided library while re...
CVE-2004-0490——cPanel, when compiling Apache 1.3.29 and PHP with the mod_phpsuexec option, does not set the --enable-discard-path optio...
CVE-2004-0766——NGSEC StackDefender 2.0 allows attackers to cause a denial of service (system crash) via an invalid address for the Base...
CVE-2004-0767——NGSEC StackDefender 1.10 allows attackers to cause a denial of service (system crash) via an invalid address for the Obj...
CVE-2004-0523——Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers ...
CVE-2004-0769——Buffer overflow in LHA allows remote attackers to execute arbitrary code via long pathnames in LHarc format 2 headers fo...
CVE-2004-0517——Unknown vulnerability in Mac OS X 10.3.4, related to "handling of process IDs during package installation," a different ...
CVE-2004-0516——Unknown vulnerability in Mac OS X 10.3.4, related to "package installation scripts," a different vulnerability than CVE-...
CVE-2004-0515——Unknown vulnerability in LoginWindow for Mac OS X 10.3.4, related to "handling of console log files."
CVE-2004-0514——Unknown vulnerability in LoginWindow for Mac OS X 10.3.4, related to "handling of directory services lookups."
CVE-2004-0231——Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to "Insecure temporary fi...
CVE-2004-0722——Integer overflow in the SOAPParameter object constructor in (1) Netscape version 7.0 and 7.1 and (2) Mozilla 1.6, and po...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now