2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1357——The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with th...
CVE-2004-1986——Directory traversal vulnerability in modules.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attacker...
CVE-2004-1890——Unknown vulnerability in ftpd in SGI IRIX 6.5.20 through 6.5.23 allows remote attackers to cause a denial of service (ha...
CVE-2004-1876——The "%f" feature in the VirusEvent directive in Clam AntiVirus daemon (clamd) before 0.70 allows local users to execute ...
CVE-2004-1878——LINBOX LIN:BOX allows remote attackers to bypass authentication, obtain sensitive information, or gain access via a dire...
CVE-2004-1875——Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0-R85 allow remote attackers to inject arbitrary web s...
CVE-2004-1877——The p_submit_url value in the sample login form in the Oracle 9i Application Server (9iAS) Single Sign-on Administrators...
CVE-2004-1872——Cross-site scripting (XSS) vulnerability in WebCT Campus Edition 4.1.1.5 allows remote attackers to inject arbitrary web...
CVE-2004-0113——Memory leak in ssl_engine_io.c for mod_ssl in Apache 2 before 2.0.49 allows remote attackers to cause a denial of servic...
CVE-2004-0126——The jail_attach system call in FreeBSD 5.1 and 5.2 changes the directory of a calling process even if the process doesn'...
CVE-2004-0158——Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable ...
CVE-2004-0160——Synaesthesia 2.2 and earlier allows local users to execute arbitrary code via a symlink attack on the configuration file...
CVE-2004-0194——Stack-based buffer overflow in the OutputDebugString function for Adobe Acrobat Reader 5.1 allows remote attackers to ex...
CVE-2004-1874——Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 ...
CVE-2004-1871——Multiple cross-site scripting (XSS) vulnerabilities in PhotoPost PHP Pro 4.6.x and earlier allow remote attackers to inj...
CVE-2004-1870——Multiple SQL injection vulnerabilities in PhotoPost PHP Pro 4.6.x and earlier allow remote attackers to gain users' pass...
CVE-2004-1866——nstxd in Nstx 1.1 beta3 and earlier allows remote attackers to cause a denial of service (crash) via a large packet, whi...
CVE-2004-1862——Multiple cross-site scripting (XSS) vulnerabilities in Extreme Messageboard (XMB) 1.8 SP3 and 1.9 beta allow remote atta...
CVE-2004-1864——SQL injection vulnerability in Extreme Messageboard (XMB) 1.9 beta allows remote attackers to execute arbitrary SQL comm...
CVE-2004-1861——Invision NetSupport School Pro uses a weak encryption algorithm to encrypt passwords, which allows local users to obtain...
CVE-2004-1868——Stack-based buffer overflow in WinSig.exe in eSignal 7.5 and 7.6 allows remote attackers to execute arbitrary code via a...
CVE-2004-1854——Buffer overflow in the logging function in Picophone 1.63 and earlier allows remote attackers to execute arbitrary code ...
CVE-2004-1851——Dameware Mini Remote Control 4.1.0.0 uses insufficiently random data to create the encryption key, which makes it easier...
CVE-2004-1849——Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0 allow remote attackers to inject arbitrary web scrip...
CVE-2004-1857——Directory traversal vulnerability in setinfo.hts in HP Web Jetadmin 7.5.2546 allows remote authenticated attackers to re...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now