2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0728 | — | — | 22.7% | Jul 27, 2004 | The Remote Control Client service in Microsoft's Systems Management Server (SMS) 2.50.2726.0 allows remote attackers to ... |
| CVE-2004-0729 | — | — | 1.4% | Jul 27, 2004 | PhpBB 2.0.8 allows remote attackers to gain sensitive information via an invalid (1) category_rows parameter to index.ph... |
| CVE-2004-0730 | — | — | 1.5% | Jul 27, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in PhpBB 2.0.8 allow remote attackers to inject arbitrary web script... |
| CVE-2004-0719 | — | — | 5.1% | Jul 27, 2004 | Internet Explorer for Mac 5.2.3, Internet Explorer 6 on Windows XP, and possibly other versions, does not properly preve... |
| CVE-2004-0720 | — | — | 1.3% | Jul 27, 2004 | Safari 1.2.2 does not properly prevent a frame in one domain from injecting content into a frame that belongs to another... |
| CVE-2004-0721 | — | — | 1.6% | Jul 27, 2004 | Konqueror 3.1.3, 3.2.2, and possibly other versions does not properly prevent a frame in one domain from injecting conte... |
| CVE-2004-0723 | — | — | 13.0% | Jul 27, 2004 | Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write c... |
| CVE-2004-0725 | — | — | 4.3% | Jul 27, 2004 | Cross-site scripting (XSS) vulnerability in help.php in Moodle 1.3.2 and 1.4 dev allows remote attackers to inject arbit... |
| CVE-2004-0695 | — | — | 38.2% | Jul 27, 2004 | Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbit... |
| CVE-2004-0736 | — | — | 1.2% | Jul 27, 2004 | The search module in Php-Nuke allows remote attackers to gain sensitive information via the (1) "**" or (2) "+" search p... |
| CVE-2004-0705 | — | — | 1.4% | Jul 27, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in (1) editcomponents.cgi, (2) editgroups.cgi, (3) editmilestones.cg... |
| CVE-2004-0735 | — | — | 62.1% | Jul 27, 2004 | Buffer overflow in Medal of Honor (1) Allied Assault 1.11v9 and earlier, (2) Breakthrough 2.40b and earlier, and (3) Spe... |
| CVE-2004-0706 | — | — | 0.3% | Jul 27, 2004 | Bugzilla 2.17.5 through 2.17.7 embeds the password in an image URL, which could allow local users to view the password i... |
| CVE-2004-0707 | — | — | 1.0% | Jul 27, 2004 | SQL injection vulnerability in editusers.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allows remote at... |
| CVE-2004-0708 | — | — | 1.8% | Jul 27, 2004 | MoinMoin 1.2.1 and earlier allows remote attackers to gain privileges by creating a user with the same name as an existi... |
| CVE-2004-0709 | — | — | 3.3% | Jul 27, 2004 | HP OpenView Select Access 5.0 through 6.0 does not correctly decode UTF-8 encoded unicode characters in a URL, which cou... |
| CVE-2004-0734 | — | — | 3.6% | Jul 27, 2004 | Web_Store.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter. |
| CVE-2004-0733 | — | — | 5.1% | Jul 27, 2004 | Format string vulnerability in OllyDbg 1.10 allows remote attackers to cause a denial of service (crash) and possibly ex... |
| CVE-2004-0710 | — | — | 2.0% | Jul 27, 2004 | IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers ... |
| CVE-2004-0711 | — | — | 1.9% | Jul 27, 2004 | The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if th... |
| CVE-2004-0712 | — | — | 0.4% | Jul 27, 2004 | The configuration tools (1) config.sh in Unix or (2) config.cmd in Windows for BEA WebLogic Server 8.1 through SP2 creat... |
| CVE-2004-0713 | — | — | 3.2% | Jul 27, 2004 | The remove method in a stateful Enterprise JavaBean (EJB) in BEA WebLogic Server and WebLogic Express version 8.1 throug... |
| CVE-2004-0714 | — | — | 2.6% | Jul 27, 2004 | Cisco Internetwork Operating System (IOS) 12.0S through 12.3T attempts to process SNMP solicited operations on improper ... |
| CVE-2004-0715 | — | — | 2.3% | Jul 27, 2004 | The WebLogic Authentication provider for BEA WebLogic Server and WebLogic Express 8.1 through SP2 and 7.0 through SP4 do... |
| CVE-2004-0717 | — | — | 2.2% | Jul 27, 2004 | Opera 7.51 for Windows and 7.50 for Linux does not properly prevent a frame in one domain from injecting content into a ... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now