2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0212 | — | — | 67.0% | Aug 6, 2004 | Stack-based buffer overflow in the Task Scheduler for Windows 2000 and XP, and Internet Explorer 6 on Windows NT 4.0, al... |
| CVE-2004-0716 | — | — | 12.6% | Aug 6, 2004 | Buffer overflow in the DCE daemon (DCED) for the DCE endpoint mapper (epmap) on HP-UX 11 allows remote attackers to exec... |
| CVE-2004-0684 | — | — | 1.6% | Aug 6, 2004 | WebSphere Edge Component Caching Proxy in WebSphere Edge Server 5.02, with the JunctionRewrite directive enabled, allows... |
| CVE-2004-0683 | — | — | 6.5% | Aug 6, 2004 | Symantec Norton AntiVirus 2002 and 2003 allows remote attackers to cause a denial of service (CPU consumption) via a com... |
| CVE-2004-0682 | — | — | 6.9% | Aug 6, 2004 | comersus_gatewayPayPal.asp in Comersus Cart 5.09, and possibly other versions before 5.098, allows remote attackers to c... |
| CVE-2004-0681 | — | — | 2.0% | Aug 6, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_customerAuthenticateForm.asp, (2) comersus_backoffic... |
| CVE-2004-0680 | — | — | 3.6% | Aug 6, 2004 | Zoom X3 ADSL modem has a terminal running on port 254 that can be accessed using the default HTML management password, e... |
| CVE-2004-0679 | — | — | 1.6% | Aug 6, 2004 | The IP cloaking feature (cloak.c) in UnrealIRCd 3.2, and possibly other versions, uses a weak hashing scheme to hide IP ... |
| CVE-2004-0678 | — | — | 1.7% | Aug 6, 2004 | Cross-site scripting (XSS) in one2planet.infolet.InfoServlet in 12Planet Chat Server 2.9 allows remote attackers to exec... |
| CVE-2004-0677 | — | — | 1.2% | Aug 6, 2004 | Fastream NETFile FTP Server 6.7.2.1085 and earlier allows remote attackers to cause a denial of service (temporary hang)... |
| CVE-2004-0676 | — | — | 4.3% | Aug 6, 2004 | Directory traversal vulnerability in Fastream NETFile FTP/Web Server 6.7.2.1085 and earlier allows remote attackers to c... |
| CVE-2004-0675 | — | — | 4.2% | Aug 6, 2004 | Cross-site scripting (XSS) vulnerability in (1) cart32.exe or (2) c32web.exe in Cart32 shopping cart allows remote attac... |
| CVE-2004-0674 | — | — | 1.6% | Aug 6, 2004 | Enterasys XSR-1800 series Security Routers, when running firmware 7.0.0.0 and using Policy-Based Routing, allow remote a... |
| CVE-2004-0673 | — | — | 2.0% | Aug 6, 2004 | Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web... |
| CVE-2004-0672 | — | — | 2.0% | Aug 6, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in the primary and management web interfaces in Netegrity IdentityMi... |
| CVE-2004-0671 | — | — | 3.1% | Aug 6, 2004 | Brightmail Spamfilter 6.0 and earlier beta releases allows remote attackers to read mail from other users by modifying t... |
| CVE-2004-0670 | — | — | 1.6% | Aug 6, 2004 | Prestige 650HW-31 running Rompager 4.7 software allows remote attackers to cause a denial of service (device reboot) via... |
| CVE-2004-0669 | — | — | 1.5% | Aug 6, 2004 | Lotus Domino 6.5.0 and 6.5.1, with IMAP enabled, allows remote authenticated users to change their quota by using the IM... |
| CVE-2004-0668 | — | — | 3.1% | Aug 6, 2004 | Web Access in Lotus Domino 6.5.1 allows remote attackers to cause a denial of service (server crash) via a large e-mail ... |
| CVE-2004-0667 | — | — | 0.4% | Aug 6, 2004 | Rule Set Based Access Control (RSBAC) 1.2.2 through 1.2.3 allows access to sys_creat, sys_open, and sys_mknod inside jai... |
| CVE-2004-0666 | — | — | 1.7% | Aug 6, 2004 | Off-by-one error in the POP3_readmsg function in popclient 3.0b6 allows remote attackers to cause a denial of service (a... |
| CVE-2004-0665 | — | — | 2.9% | Aug 6, 2004 | csFAQ.cgi in csFAQ allows remote attackers to gain sensitive information via an invalid database parameter, which reveal... |
| CVE-2004-0664 | — | — | 7.3% | Aug 6, 2004 | Directory traversal vulnerability in modules.php in PowerPortal 1.x allows remote attackers to list arbitrary directorie... |
| CVE-2004-0663 | — | — | 2.0% | Aug 6, 2004 | Cross-site scripting (XSS) vulnerability in modules.php in PowerPortal 1.x allows remote attackers to inject arbitrary s... |
| CVE-2004-0662 | — | — | 1.5% | Aug 6, 2004 | PowerPortal 1.x allows remote attackers to gain sensitive information via invalid or missing parameters in HTTP requests... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now