2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

CVE IDSeverityCVSSDescription
CVE-2004-0386——Buffer overflow in the HTTP parser for MPlayer 1.0pre3 and earlier, 0.90, and 0.91 allows remote attackers to execute ar...
CVE-2004-1982——Post.pl in YaBB 1 Gold SP 1.2 allows remote attackers to modify records in the board's .txt file via carriage return cha...
CVE-2004-0428——Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an en...
CVE-2004-1991——Directory traversal vulnerability in Aldo's Web Server (aweb) 1.5 allows remote attackers to view arbitrary files via a ...
CVE-2004-1984——Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers to obtain sensitive information via a direct HTTP ...
CVE-2004-1983——The arch_get_unmapped_area function in mmap.c in the PaX patches for Linux kernel 2.6, when Address Space Layout Randomi...
CVE-2004-1981——The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeated...
CVE-2004-2043——Buffer overflow in ibserver for Firebird Database 1.0 and other versions before 1.5, and possibly other products that us...
CVE-2004-1989——PHP remote file inclusion vulnerability in theme.php in Coppermine Photo Gallery 1.2.2b allows remote attackers to execu...
CVE-2004-1985——Cross-site scripting (XSS) vulnerability in menu.inc.php in Coppermine Photo Gallery 1.2.2b allows remote attackers to i...
CVE-2004-1987——picmgmtbatch.inc.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers with administrative privil...
CVE-2004-1980——Directory traversal vulnerability in glossary.php in PROPS 0.6.1 allows remote attackers to view arbitrary files via a ....
CVE-2004-1988——PHP remote file inclusion vulnerability in init.inc.php in Coppermine Photo Gallery 1.2.0 RC4 allows remote attackers to...
CVE-2004-1979——Cross-site scripting (XSS) vulnerability in do_search.php in PROPS 0.6.1 allows remote attackers to inject arbitrary HTM...
CVE-2004-1978——Cross-site scripting (XSS) vulnerability in help.php in Moodle before 1.3 allows remote attackers to inject arbitrary HT...
CVE-2004-1977——3com NBX IP VOIP NetSet Configuration Manager allows remote attackers to cause a denial of service (crash) via a Nessus ...
CVE-2004-1976——SMC Barricade broadband router 7008ABR and 7004VBR enable remote administration by default, which allows remote attacker...
CVE-2004-1975——Cross-site scripting (XSS) vulnerability in the category module in pafiledb.php for paFileDB 3.1 allows remote attackers...
CVE-2004-1974——paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.p...
CVE-2004-1973——DiGi Web Server allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request that cont...
CVE-2004-1355——Unknown vulnerability in the TCP/IP stack for Sun Solaris 8 and 9 allows local users to cause a denial of service (syste...
CVE-2004-1972——SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execut...
CVE-2004-1078——Stack-based buffer overflow in the client for Citrix Program Neighborhood Agent for Win32 8.00.24737 and earlier and Cit...
CVE-2004-1970——Samsung SmartEther SS6215S switch, and possibly other Samsung switches, allows remote attackers and local users to gain ...
CVE-2004-1971——modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to gain sensitive information via an HTT...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now