2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-2006——Trend Micro OfficeScan 3.0 - 6.0 has default permissions of "Everyone Full Control" on the installation directory and re...
CVE-2004-2005——Buffer overflow in Eudora for Windows 5.2.1, 6.0.3, and 6.1 allows remote attackers to execute arbitrary code via an e-m...
CVE-2004-2003——Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote ...
CVE-2004-2004——The Live CD in SUSE LINUX 9.1 Personal edition is configured without a password for root, which allows remote attackers ...
CVE-2004-2002——Unknown vulnerability in SGI IRIX 6.5 through 6.5.22m allows remote attackers to cause a denial of service via a certain...
CVE-2004-1994——FuseTalk 4.0 allows remote attackers to ban other users via a direct request to banning.cfm.
CVE-2004-1996——Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 1.0 allows remote attackers to inject arbitrary ...
CVE-2004-1997——Kolab stores OpenLDAP passwords in plaintext in the slapd.conf file, which may be installed world-readable, which allows...
CVE-2004-1998——The Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to gain sensitive information via an invalid sh...
CVE-2004-1999——Cross-site scripting (XSS) vulnerability in the Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to ...
CVE-2004-2000——SQL injection vulnerability in the Downloads module in Php-Nuke 6.x through 7.2 allows remote attackers to execute arbit...
CVE-2004-2001——ifconfig "-arp" in SGI IRIX 6.5 through 6.5.22m does not properly disable ARP requests from being sent or received.
CVE-2004-0379——Multiple cross-site scripting (XSS) vulnerabilities in Microsoft SharePoint Portal Server 2001 allow remote attackers to...
CVE-2004-0366——SQL injection vulnerability in the libpam-pgsql library before 0.5.2 allows attackers to execute arbitrary SQL statement...
CVE-2004-0367——Ethereal 0.10.1 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a zero-length Presentation pr...
CVE-2004-0149——Multiple buffer overflows in xboing before 2.4 allow local users to gain privileges.
CVE-2004-1993——The patch to the checklogin function in omail.pl for omail webmail 0.98.5 is incomplete, which allows remote attackers t...
CVE-2004-0371——Heimdal 0.6.x before 0.6.1 and 0.5.x before 0.5.3 does not properly perform certain consistency checks for cross-realm r...
CVE-2004-0386——Buffer overflow in the HTTP parser for MPlayer 1.0pre3 and earlier, 0.90, and 0.91 allows remote attackers to execute ar...
CVE-2004-0376——oftpd 0.3.6 and earlier allows remote attackers to cause a denial of service (crash) via a PORT command with a large val...
CVE-2004-0377——Buffer overflow in the win32_stat function for (1) ActiveState's ActivePerl and (2) Larry Wall's Perl before 5.8.3 allow...
CVE-2004-0374——Interchange before 5.0.1 allows remote attackers to "expose the content of arbitrary variables" and read or modify sensi...
CVE-2004-0383——Unknown vulnerability in Mail for Mac OS X 10.3.3 and 10.2.8, with unknown impact, related to "the handling of HTML-form...
CVE-2004-0176——Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly ...
CVE-2004-0368——Double free vulnerability in dtlogin in CDE on Solaris, HP-UX, and other operating systems allows remote attackers to ex...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now