2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0528 | — | — | 2.3% | Aug 6, 2004 | Netscape Navigator 7.1 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified... |
| CVE-2004-0527 | — | — | 5.8% | Aug 6, 2004 | KDE Konqueror 2.1.1 and 2.2.2 allows remote attackers to spoof a legitimate URL in the status bar via A HREF tags with m... |
| CVE-2004-0526 | — | — | 17.2% | Aug 6, 2004 | Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via... |
| CVE-2004-0525 | — | — | 2.7% | Aug 6, 2004 | HP Integrated Lights-Out (iLO) 1.10 and other versions before 1.55 allows remote attackers to cause a denial of service ... |
| CVE-2004-0524 | — | — | 4.6% | Aug 6, 2004 | Buffer overflow in the chpasswd command in the Change_passwd plugin before 4.0, as used in SquirrelMail, allows local us... |
| CVE-2004-0215 | — | — | 15.6% | Aug 6, 2004 | Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-... |
| CVE-2004-0683 | — | — | 6.5% | Aug 6, 2004 | Symantec Norton AntiVirus 2002 and 2003 allows remote attackers to cause a denial of service (CPU consumption) via a com... |
| CVE-2004-0522 | — | — | 2.8% | Aug 6, 2004 | Gallery 1.4.3 and earlier allows remote attackers to bypass authentication and obtain Gallery administrator privileges. |
| CVE-2004-0682 | — | — | 6.9% | Aug 6, 2004 | comersus_gatewayPayPal.asp in Comersus Cart 5.09, and possibly other versions before 5.098, allows remote attackers to c... |
| CVE-2004-0681 | — | — | 2.0% | Aug 6, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_customerAuthenticateForm.asp, (2) comersus_backoffic... |
| CVE-2004-0204 | — | — | 73.0% | Aug 6, 2004 | Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterpri... |
| CVE-2004-0213 | HIGH | 7.8 | 21.3% | Aug 6, 2004 | Utility Manager in Windows 2000 launches winhlp32.exe while Utility Manager is running with raised privileges, which all... |
| CVE-2004-0212 | — | — | 67.0% | Aug 6, 2004 | Stack-based buffer overflow in the Task Scheduler for Windows 2000 and XP, and Internet Explorer 6 on Windows NT 4.0, al... |
| CVE-2004-0680 | — | — | 3.6% | Aug 6, 2004 | Zoom X3 ADSL modem has a terminal running on port 254 that can be accessed using the default HTML management password, e... |
| CVE-2004-0495 | — | — | 0.4% | Aug 6, 2004 | Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memor... |
| CVE-2004-0493 | — | — | 84.8% | Aug 6, 2004 | The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memor... |
| CVE-2004-0492 | — | — | 33.6% | Aug 6, 2004 | Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a d... |
| CVE-2004-0679 | — | — | 1.6% | Aug 6, 2004 | The IP cloaking feature (cloak.c) in UnrealIRCd 3.2, and possibly other versions, uses a weak hashing scheme to hide IP ... |
| CVE-2004-0678 | — | — | 1.7% | Aug 6, 2004 | Cross-site scripting (XSS) in one2planet.infolet.InfoServlet in 12Planet Chat Server 2.9 allows remote attackers to exec... |
| CVE-2004-0202 | — | — | 26.2% | Aug 6, 2004 | IDirectPlay4 Application Programming Interface (API) of Microsoft DirectPlay 7.0a thru 9.0b, as used in Windows Server 2... |
| CVE-2004-0677 | — | — | 1.2% | Aug 6, 2004 | Fastream NETFile FTP Server 6.7.2.1085 and earlier allows remote attackers to cause a denial of service (temporary hang)... |
| CVE-2004-0676 | — | — | 4.3% | Aug 6, 2004 | Directory traversal vulnerability in Fastream NETFile FTP/Web Server 6.7.2.1085 and earlier allows remote attackers to c... |
| CVE-2004-0675 | — | — | 4.2% | Aug 6, 2004 | Cross-site scripting (XSS) vulnerability in (1) cart32.exe or (2) c32web.exe in Cart32 shopping cart allows remote attac... |
| CVE-2004-0674 | — | — | 1.6% | Aug 6, 2004 | Enterasys XSR-1800 series Security Routers, when running firmware 7.0.0.0 and using Policy-Based Routing, allow remote a... |
| CVE-2004-0673 | — | — | 2.0% | Aug 6, 2004 | Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now