2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-0180 | — | — | 1.8% | Jun 1, 2004 | The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff fil... |
| CVE-2004-0405 | — | — | 2.4% | Jun 1, 2004 | CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client reques... |
| CVE-2004-0403 | — | — | 2.9% | Jun 1, 2004 | Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet w... |
| CVE-2004-0391 | — | — | 4.6% | Jun 1, 2004 | Cisco Wireless LAN Solution Engine (WLSE) 2.0 through 2.5 and Hosting Solution Engine (HSE) 1.7 through 1.7.3 have a har... |
| CVE-2004-0388 | — | — | 0.6% | Jun 1, 2004 | The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack. |
| CVE-2004-0387 | — | — | 3.2% | Jun 1, 2004 | Stack-based buffer overflow in the RT3 plugin, as used in RealPlayer 8, RealOne Player, RealOne Player 10 beta, and Real... |
| CVE-2004-0385 | — | — | 15.5% | Jun 1, 2004 | Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allo... |
| CVE-2004-0182 | — | — | 1.3% | Jun 1, 2004 | Mailman before 2.0.13 allows remote attackers to cause a denial of service (crash) via an email message with an empty su... |
| CVE-2004-0133 | — | — | 0.4% | Jun 1, 2004 | The XFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the... |
| CVE-2004-0124 | — | — | 21.3% | Jun 1, 2004 | The DCOM RPC interface for Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause network ... |
| CVE-2004-0123 | — | — | 29.6% | Jun 1, 2004 | Double free vulnerability in the ASN.1 library as used in Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2... |
| CVE-2004-0120 | — | — | 55.6% | Jun 1, 2004 | The Microsoft Secure Sockets Layer (SSL) library, as used in Windows 2000, Windows XP, and Windows Server 2003, allows r... |
| CVE-2004-0119 | HIGH | 7.5 | 39.6% | Jun 1, 2004 | The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows re... |
| CVE-2004-0118 | — | — | 22.2% | Jun 1, 2004 | The component for the Virtual DOS Machine (VDM) subsystem in Windows NT 4.0 and Windows 2000 does not properly validate ... |
| CVE-2004-0117 | — | — | 26.4% | Jun 1, 2004 | Unknown vulnerability in the H.323 protocol implementation in Windows 98, Windows 2000, Windows XP, and Windows Server 2... |
| CVE-2004-0116 | — | — | 36.6% | Jun 1, 2004 | An Activation function in the RPCSS Service involved with DCOM activation for Microsoft Windows 2000, XP, and 2003 allow... |
| CVE-2004-0109 | — | — | 0.6% | Jun 1, 2004 | Buffer overflow in the ISO9660 file system component for Linux kernel 2.4.x, 2.5.x and 2.6.x, allows local users with ph... |
| CVE-2004-2044 | — | — | 11.0% | Jun 1, 2004 | PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLit... |
| CVE-2004-0197 | — | — | 26.3% | Jun 1, 2004 | Buffer overflow in Microsoft Jet Database Engine 4.0 allows remote attackers to execute arbitrary code via a specially-c... |
| CVE-2004-2039 | — | — | 1.8% | May 29, 2004 | e107 0.615 allows remote attackers to obtain sensitive information via a direct request to (1) alt_news.php, (2) backend... |
| CVE-2004-2042 | — | — | 1.9% | May 29, 2004 | Multiple SQL injection vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary SQL code and gain sensit... |
| CVE-2004-2040 | — | — | 5.1% | May 29, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script ... |
| CVE-2004-2041 | — | — | 2.1% | May 29, 2004 | PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote attackers to execute arbitr... |
| CVE-2004-2038 | — | — | 2.5% | May 29, 2004 | Cross-site scripting (XSS) vulnerability in Land Down Under (LDU) before LDU 700 allows remote attackers to inject arbit... |
| CVE-2004-2036 | — | — | 2.7% | May 28, 2004 | SQL injection vulnerability in the art_print function in print.inc.php in unknown versions of jPortal before 2.3.1 allow... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now