2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-0234——Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as B...
CVE-2004-0233——Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwr...
CVE-2004-0232——Multiple format string vulnerabilities in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of ...
CVE-2004-0231——Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to "Insecure temporary fi...
CVE-2004-0076——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was removed from considera...
CVE-2004-0230——TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial o...
CVE-2004-0229——The framebuffer driver in Linux kernel 2.6.x does not properly use the fb_copy_cmap function, with unknown impact.
CVE-2004-0228——Integer signedness error in the cpufreq proc handler (cpufreq_procctl) in Linux kernel 2.6 allows local users to gain pr...
CVE-2004-0226——Multiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or ex...
CVE-2004-0175——Directory traversal vulnerability in scp for OpenSSH before 3.4p1 allows remote malicious servers to overwrite arbitrary...
CVE-2004-0134——cpr (libcpr) in SGI IRIX before 6.5.25 allows local users to gain privileges by loading a user provided library while re...
CVE-2004-1720——The (1) address.html and possibly (2) calendar.html pages in Merak Mail Server 5.2.7 allow remote attackers to gain sens...
CVE-2004-1721——The (1) function.php or (2) function.view.php scripts in Merak Mail Server 5.2.7 allow remote attackers to read arbitrar...
CVE-2004-1718——The ZwOpenSection function in Integrity Protection Driver (IPD) 1.4 and earlier allows local users to cause a denial of ...
CVE-2004-1722——SQL injection vulnerability in calendar.html in Merak Mail Server 5.2.7 allows remote attackers to execute arbitrary SQL...
CVE-2004-1719——Multiple cross-site scripting (XSS) vulnerabilities in Merak Webmail Server 5.2.7 allow remote attackers to inject arbit...
CVE-2004-1737——SQL injection vulnerability in auth_login.php in Cacti 0.8.5a allows remote attackers to execute arbitrary SQL commands ...
CVE-2004-1717——Multiple buffer overflows in the psscan function in ps.c for gv (ghostview) allow remote attackers to execute arbitrary ...
CVE-2004-1716——Cross-site scripting (XSS) vulnerability in PForum before 1.26 allows remote attackers to inject arbitrary web script or...
CVE-2004-1682——Format string vulnerability in QNX 6.1 FTP client allows remote authenticated users to gain group bin privileges via for...
CVE-2004-1715——Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 allows remote attackers or local users to read arb...
CVE-2004-1347——X Display Manager (XDM) on Solaris 8 allows remote attackers to cause a denial of service (XDM crash) via an invalid X D...
CVE-2004-1713——Unknown vulnerability in HP Process Resource Manager (PRM) C.02.01[.01] and earlier, as used by HP-UX Workload Manager (...
CVE-2004-1701——Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote...
CVE-2004-1702——The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 does not properly check the return value of...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now