2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0050 | — | — | 1.4% | Jun 14, 2004 | Verity Ultraseek before 5.2.2 allows remote attackers to obtain the full pathname of the document root via an MS-DOS dev... |
| CVE-2004-0038 | — | — | 3.2% | Jun 14, 2004 | McAfee ePolicy Orchestrator (ePO) 2.5.1 Patch 13 and 3.0 SP2a Patch 3 allows remote attackers to execute arbitrary comma... |
| CVE-2004-0227 | — | — | 3.2% | Jun 14, 2004 | Buffer overflow in the zms script in ZoneMinder before 1.19.2 may allow a remote attacker to execute arbitrary code via ... |
| CVE-2004-0392 | — | — | 2.5% | Jun 14, 2004 | racoon before 20040407b allows remote attackers to cause a denial of service (infinite loop and dropped connections) via... |
| CVE-2004-0179 | — | — | 11.1% | Jun 1, 2004 | Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Ca... |
| CVE-2004-0178 | — | — | 0.4% | Jun 1, 2004 | The OSS code for the Sound Blaster (sb16) driver in Linux 2.4.x before 2.4.26, when operating in 16 bit mode, does not p... |
| CVE-2004-0177 | — | — | 2.6% | Jun 1, 2004 | The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an infor... |
| CVE-2004-0116 | — | — | 36.6% | Jun 1, 2004 | An Activation function in the RPCSS Service involved with DCOM activation for Microsoft Windows 2000, XP, and 2003 allow... |
| CVE-2004-0117 | — | — | 26.4% | Jun 1, 2004 | Unknown vulnerability in the H.323 protocol implementation in Windows 98, Windows 2000, Windows XP, and Windows Server 2... |
| CVE-2004-2044 | — | — | 11.0% | Jun 1, 2004 | PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLit... |
| CVE-2004-0155 | — | — | 3.6% | Jun 1, 2004 | The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not veri... |
| CVE-2004-0118 | — | — | 22.2% | Jun 1, 2004 | The component for the Virtual DOS Machine (VDM) subsystem in Windows NT 4.0 and Windows 2000 does not properly validate ... |
| CVE-2004-0391 | — | — | 4.6% | Jun 1, 2004 | Cisco Wireless LAN Solution Engine (WLSE) 2.0 through 2.5 and Hosting Solution Engine (HSE) 1.7 through 1.7.3 have a har... |
| CVE-2004-0120 | — | — | 55.6% | Jun 1, 2004 | The Microsoft Secure Sockets Layer (SSL) library, as used in Windows 2000, Windows XP, and Windows Server 2003, allows r... |
| CVE-2004-0123 | — | — | 29.6% | Jun 1, 2004 | Double free vulnerability in the ASN.1 library as used in Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2... |
| CVE-2004-0124 | — | — | 21.3% | Jun 1, 2004 | The DCOM RPC interface for Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause network ... |
| CVE-2004-0409 | — | — | 9.0% | Jun 1, 2004 | Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows re... |
| CVE-2004-0407 | — | — | 1.5% | Jun 1, 2004 | The HTML form upload capability in ColdFusion MX 6.1 does not reclaim disk space if an upload is interrupted, which allo... |
| CVE-2004-0405 | — | — | 2.4% | Jun 1, 2004 | CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client reques... |
| CVE-2004-0388 | — | — | 0.6% | Jun 1, 2004 | The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack. |
| CVE-2004-0387 | — | — | 3.2% | Jun 1, 2004 | Stack-based buffer overflow in the RT3 plugin, as used in RealPlayer 8, RealOne Player, RealOne Player 10 beta, and Real... |
| CVE-2004-0403 | — | — | 2.9% | Jun 1, 2004 | Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet w... |
| CVE-2004-0157 | — | — | 0.4% | Jun 1, 2004 | x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows lo... |
| CVE-2004-0133 | — | — | 0.4% | Jun 1, 2004 | The XFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the... |
| CVE-2004-0385 | — | — | 15.5% | Jun 1, 2004 | Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allo... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now