2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-0548——Multiple stack-based buffer overflows in the word-list-compress functionality in compress.c for Aspell allow local users...
CVE-2004-0549——The WebBrowser ActiveX control, or the Internet Explorer HTML rendering engine (MSHTML), as used in Internet Explorer 6,...
CVE-2004-0550——Buffer overflow in Real Networks RealPlayer 10 allows remote attackers to execute arbitrary code via a URL with a large ...
CVE-2004-0551——Cisco CatOS 5.x before 5.5(20) through 8.x before 8.2(2) and 8.3(2)GLX, as used in Catalyst switches, allows remote atta...
CVE-2004-0495——Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memor...
CVE-2004-0538——LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow at...
CVE-2004-0537——Opera 7.50 and earlier allows remote web sites to provide a "Shortcut Icon" (favicon) that is wider than expected, which...
CVE-2004-0641——Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP I...
CVE-2004-1369——The TNS Listener in Oracle 10g allows remote attackers to cause a denial of service (listener crash) via a malformed ser...
CVE-2004-1368——ISQL*Plus in Oracle 10g Application Server allows remote attackers to execute arbitrary files via an absolute pathname i...
CVE-2004-1367——Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP o...
CVE-2004-1366——Oracle 10g Database Server stores the password for the SYSMAN account in cleartext in the world-readable emoms.propertie...
CVE-2004-1365——Extproc in Oracle 9i and 10g does not require authentication to load a library or execute a function, which allows local...
CVE-2004-1364——Directory traversal vulnerability in extproc in Oracle 9i and 10g allows remote attackers to access arbitrary libraries ...
CVE-2004-1362——The PL/SQL module for the Oracle HTTP Server in Oracle Application Server 10g, when using the WE8ISO8859P1 character set...
CVE-2004-1679——Directory traversal vulnerability in TwinFTP 1.0.3 R2 allows remote attackers to create arbitrary files via a .../ (trip...
CVE-2004-1371——Stack-based buffer overflow in Oracle 9i and 10g allows remote attackers to execute arbitrary code via a long token in t...
CVE-2004-1370——Multiple SQL injection vulnerabilities in PL/SQL procedures that run with definer rights in Oracle 9i and 10g allow remo...
CVE-2004-1709——Datakey Rainbow iKey2032 USB token, when using the CIP client package, does not encrypt communications between the token...
CVE-2004-1708——Webbsyte Chat 0.9.0 allows remote attackers to cause a denial of service (crash) via a large number of connections.
CVE-2004-1706——The U.S. Robotics USR808054 wireless access point allows remote attackers to cause a denial of service (device crash) an...
CVE-2004-1705——Buffer overflow in Citadel/UX 6.23 and earlier allows remote attackers to cause a denial of service via a long username.
CVE-2004-1707——The (1) dbsnmp and (2) nmo programs in Oracle 8i, Oracle 9i, and Oracle IAS 9.0.2.0.1, on Unix systems, use a default pa...
CVE-2004-1704——WpQuiz 2.60b1 through 2.60b8 allows remote attackers to gain privileges via a direct request to adminrestore.php in the ...
CVE-2004-2066——SQL injection vulnerability in session.php in LinPHA 0.9.4 allows remote attackers to execute arbitrary SQL code and byp...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now