2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0723——Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write c...
CVE-2004-0724——The Half-Life engine before July 7 2004 allows remote attackers to cause a denial of service (server or client crash) vi...
CVE-2004-0726——The Windows Media Player control in Microsoft Windows 2000 allows remote attackers to execute arbitrary script in the lo...
CVE-2004-0686——Buffer overflow in Samba 2.2.x to 2.2.9, and 3.0.0 to 3.0.4, when the "mangling method = hash" option is enabled in smb....
CVE-2004-0695——Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbit...
CVE-2004-0696——The ShellExample.cgi script in 4D WebSTAR 5.3.2 and earlier allows remote attackers to list arbitrary directories via a ...
CVE-2004-0697——Unknown vulnerability in 4D WebSTAR 5.3.2 and earlier allows remote attackers to read the php.ini configuration file and...
CVE-2004-0698——4D WebSTAR 5.3.2 and earlier allows local users to read and modify arbitrary files via a symlink attack.
CVE-2004-0700——Format string vulnerability in the mod_proxy hook functions function in ssl_engine_log.c in mod_ssl before 2.8.19 for Ap...
CVE-2004-0701——Sun Ray Server Software (SRSS) 1.3 and 2.0 for Solaris 2.6, 7 and 8 does not properly detect a smartcard removal when th...
CVE-2004-0702——DBI in Bugzilla 2.17.1 through 2.17.7 displays the database password in an error message when the SQL server is not runn...
CVE-2004-0738——Multiple SQL injection vulnerabilities in the Search module in Php-Nuke allow remote attackers to execute arbitrary SQL ...
CVE-2004-0719——Internet Explorer for Mac 5.2.3, Internet Explorer 6 on Windows XP, and possibly other versions, does not properly preve...
CVE-2004-2051——The Phoenix browser in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allows local users to read arbit...
CVE-2004-2053——PHP remote file inclusion vulnerability in index.php in EasyIns Stadtportal 4 allows remote attackers to execute arbitra...
CVE-2004-2047——Directory traversal vulnerability in EasyWeb FileManager 1.0 RC-1 for PostNuke allows remote attackers to retrieve arbit...
CVE-2004-1749——Attack Mitigator IPS 5500 3.11.008, and possibly other versions, when configured in a one-armed routing configuration, a...
CVE-2004-2055——Cross-site scripting (XSS) vulnerability in search.php for PhpBB 2.0.4 and 2.0.9 allows remote attackers to inject arbit...
CVE-2004-0478——Unknown versions of Mozilla allow remote attackers to cause a denial of service (high CPU/RAM consumption) using Javascr...
CVE-2004-0420——The Windows Shell application in Windows 98, Windows ME, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 20...
CVE-2004-0422——flim before 1.14.3 creates temporary files insecurely, which allows local users to overwrite arbitrary files of the Emac...
CVE-2004-0423——The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack ...
CVE-2004-0424——Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows loca...
CVE-2004-0426——rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows ...
CVE-2004-0427——The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count coun...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now