Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
396,015 CVEs1,717 in CISA KEV17,157 with EPSS ≥ 10%25,049 with a public exploitUpdated 22 September 2026
17,157 results · page 319 of 344
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2004-1892 | Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string. | EXPLOIT ✓HIGH 7.5EPSS 10.0% | 31 December 2004 |
| CVE-2004-1812 | Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attackers to execute arbitrary code. | HIGH 10.0EPSS 45.2% | 31 December 2004 |
| CVE-2004-1789 | Cross-site scripting (XSS) vulnerability in the web management interface in ZyWALL 10 4.07 allows remote attackers to inject arbitrary web script or HTML via the rpAuth_1 page. | EXPLOIT ✓MEDIUM 4.3EPSS 11.2% | 31 December 2004 |
| CVE-2004-1782 | athenareg.php in Athena Web Registration allows remote attackers to execute arbitrary commands via shell metacharacters in the pass parameter. | EXPLOIT ✓HIGH 7.5EPSS 28.6% | 31 December 2004 |
| CVE-2004-1584 | CRLF injection vulnerability in wp-login.php in WordPress 1.2 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the text parameter. | EXPLOIT ✓MEDIUM 5.0EPSS 11.2% | 31 December 2004 |
| CVE-2004-1561 | Buffer overflow in Icecast 2.0.1 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a large number of headers. | EXPLOIT ×3 ✓HIGH 7.5EPSS 77.9% | 31 December 2004 |
| CVE-2004-1560 | Microsoft SQL Server 7.0 allows remote attackers to cause a denial of service (mssqlserver service halt) via a long request to TCP port 1433, possibly triggering a buffer overflow. | EXPLOIT ✓MEDIUM 5.0EPSS 25.6% | 31 December 2004 |
| CVE-2004-1558 | Multiple stack-based buffer overflows in YPOPs! | EXPLOIT ×3 ✓HIGH 7.5EPSS 71.1% | 31 December 2004 |
| CVE-2004-1550 | Motorola Wireless Router WR850G running firmware 4.03 allows remote attackers to bypass authentication, log on as an administrator, and obtain sensitive information by repeatedly making an HTTP request for ver.asp until an administrator logs on. | HIGH 7.5EPSS 18.6% | 31 December 2004 |
| CVE-2004-1546 | Multiple buffer overflows in MDaemon 6.5.1 allow remote attackers to cause a denial of service (application crash) via a long (1) SAML, SOML, SEND, or MAIL command to the SMTP server or (2) LIST command to the IMAP server. | EXPLOIT ×2 ✓MEDIUM 5.0EPSS 31.1% | 31 December 2004 |
| CVE-2004-1520 | Stack-based buffer overflow in IPSwitch IMail 8.13 allows remote authenticated users to execute arbitrary code via a long IMAP DELETE command. | EXPLOIT ×3 ✓MEDIUM 4.6EPSS 88.5% | 31 December 2004 |
| CVE-2004-1491 | Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitrary code via a shortcut or launcher that contains an Exec entry. | EXPLOIT ✓MEDIUM 5.0EPSS 12.6% | 31 December 2004 |
| CVE-2004-1456 | filediff in CVStrac allows remote attackers to execute arbitrary commands via shell metacharacters in rcsinfo. | EXPLOIT ✓HIGH 7.5EPSS 14.0% | 31 December 2004 |
| CVE-2004-1439 | Buffer overflow in BlackJumboDog 3.x allows remote attackers to execute arbitrary code via long FTP commands such as (1) USER, (2) PASS, (3) RETR,(4) CWD, (5) XMKD, and (6) XRMD. | EXPLOIT ×2 ✓HIGH 7.5EPSS 15.8% | 31 December 2004 |
| CVE-2004-1437 | Multiple buffer overflows in the digest authentication functionality in Pavuk 0.9.28-r2 and earlier allow remote attackers to execute arbitrary code. | EXPLOIT ✓HIGH 7.5EPSS 13.4% | 31 December 2004 |
| CVE-2004-1423 | Multiple PHP remote file inclusion vulnerabilities in Sean Proctor PHP-Calendar before 0.10.1, as used in Commonwealth of Massachusetts Virtual Law Office (VLO) and other products, allow remote attackers to execute arbitrary PHP code via a URL in the… | EXPLOITHIGH 7.5EPSS 15.5% | 31 December 2004 |
| CVE-2004-1392 | PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function. | EXPLOIT ✓MEDIUM 5.0EPSS 10.8% | 31 December 2004 |
| CVE-2004-1388 | Format string vulnerability in the gpsd_report function for BerliOS GPD daemon (gpsd, formerly pygps) 1.9.0 through 2.7 allows remote attackers to execute arbitrary code via certain GPS requests containing format string specifiers that are not properly… | EXPLOIT ×4 ✓HIGH 7.5EPSS 68.2% | 31 December 2004 |
| CVE-2004-1306 | Heap-based buffer overflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows 2003 allows remote attackers to execute arbitrary code via a crafted .hlp file. | EXPLOIT ✓MEDIUM 5.1EPSS 19.6% | 31 December 2004 |
| CVE-2004-1173 | Internet Explorer 6 allows remote attackers to bypass the popup blocker via the document object model (DOM) methods in the DHTML Dynamic HTML (DHTML) Editing Component (DEC) and Javascript that calls showModalDialog. | HIGH 7.5EPSS 11.7% | 31 December 2004 |
| CVE-2004-1166 | CRLF injection vulnerability in Microsoft Internet Explorer 6.0.2800.1106 and earlier allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded newline ("%0a") before the FTP command, which causes the… | EXPLOIT ✓HIGH 7.5EPSS 39.2% | 31 December 2004 |
| CVE-2004-1155 | Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one window into another window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web… | HIGH 7.5EPSS 12.6% | 31 December 2004 |
| CVE-2004-1104 | Microsoft Internet Explorer 6.0 SP2 allows remote attackers to spoof a legitimate URL in the status bar and conduct a phishing attack via a web page that contains a BASE element that points to the legitimate site, followed by an anchor (a) element with… | EXPLOIT ✓HIGH 7.5EPSS 35.3% | 31 December 2004 |
| CVE-2004-1050 | Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME… | EXPLOIT ✓HIGH 10.0EPSS 67.1% | 31 December 2004 |
| CVE-2004-1049 | Integer overflow in the LoadImage API of the USER32 Lib for Microsoft Windows allows remote attackers to execute arbitrary code via a .bmp, .cur, .ico or .ani file with a large image size field, which leads to a buffer overflow, aka the "Cursor and Icon… | MEDIUM 5.1EPSS 30.6% | 31 December 2004 |
| CVE-2004-1043 | Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to execute arbitrary code by using the "Related Topics" command in the Help ActiveX Control (hhctrl.ocx) to open a Help popup window containing the PCHealth tools.htm file in the local zone… | EXPLOIT ✓MEDIUM 5.0EPSS 45.0% | 31 December 2004 |
| CVE-2004-0985 | Internet Explorer 6.x on Windows XP SP2 allows remote attackers to execute arbitrary code, as demonstrated using a document with a draggable file type such as .xml, .doc, .py, .cdf, .css, .pdf, or .ppt, and using ADODB.Connection and ADODB.recordset to… | HIGH 10.0EPSS 20.2% | 31 December 2004 |
| CVE-2004-0826 | Heap-based buffer overflow in Netscape Network Security Services (NSS) library allows remote attackers to execute arbitrary code via a modified record length field in an SSLv2 client hello message. | HIGH 7.5EPSS 22.5% | 31 December 2004 |
| CVE-2004-0567 | The Windows Internet Naming Service (WINS) in Windows NT Server 4.0 SP 6a, NT Terminal Server 4.0 SP 6, Windows 2000 Server SP3 and SP4, and Windows Server 2003 does not properly validate the computer name value in a WINS packet, which allows remote… | EXPLOIT ✓HIGH 7.5EPSS 68.7% | 31 December 2004 |
| CVE-2004-0465 | Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted files via "..//" sequences in the WCP_USER parameter. | EXPLOIT ✓MEDIUM 5.0EPSS 12.3% | 31 December 2004 |
| CVE-2004-1317 | Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attackers to execute arbitrary code via a long DNS command. | EXPLOIT ×2 ✓HIGH 7.5EPSS 60.4% | 27 December 2004 |
| CVE-2004-1373 | Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via format string specifiers in a content URL, as demonstrated in the filename portion of a .mp3 file. | EXPLOIT ×3 ✓HIGH 7.5EPSS 70.1% | 23 December 2004 |
| CVE-2004-1361 | Integer underflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows 2003 allows remote attackers to execute arbitrary code via a malformed .hlp file, which leads to a heap-based buffer overflow. | MEDIUM 5.0EPSS 20.0% | 23 December 2004 |
| CVE-2004-1305 | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory… | EXPLOIT ✓MEDIUM 5.0EPSS 58.6% | 23 December 2004 |
| CVE-2004-0867 | Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. | HIGH 7.5EPSS 17.2% | 23 December 2004 |
| CVE-2004-0842 | Internet Explorer 6.0 SP1 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (application crash from "memory corruption") via certain malformed Cascading Style Sheet (CSS) elements that trigger heap-based… | EXPLOIT ✓HIGH 7.5EPSS 56.6% | 23 December 2004 |
| CVE-2004-0841 | Internet Explorer 6.x allows remote attackers to install arbitrary programs via mousedown events that call the Popup.show method and use drag-and-drop actions in a popup window, aka "HijackClick 3" and the "Script in Image Tag File Download… | EXPLOIT ✓MEDIUM 5.0EPSS 48.7% | 23 December 2004 |
| CVE-2004-0816 | Integer underflow in the firewall logging rules for iptables in Linux before 2.6.8 allows remote attackers to cause a denial of service (application crash) via a malformed IP packet. | EXPLOIT ✓HIGH 7.5EPSS 11.5% | 23 December 2004 |
| CVE-2005-0068 | The original design of ICMP does not require authentication for host-generated ICMP error messages, which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated using (1)… | MEDIUM 5.0EPSS 54.4% | 22 December 2004 |
| CVE-2005-0067 | The original design of TCP does not require that port numbers be assigned randomly (aka "Port randomization"), which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated… | MEDIUM 5.0EPSS 13.5% | 22 December 2004 |
| CVE-2005-0066 | The original design of TCP does not check that the TCP Acknowledgement number in an ICMP error message generated by an intermediate router is within the range of possible values for data that has already been acknowledged (aka "TCP acknowledgement… | MEDIUM 5.0EPSS 10.7% | 22 December 2004 |
| CVE-2004-1325 | The getItemInfoByAtom function in the ActiveX control for Microsoft Windows Media Player 9.0 returns a 0 if the file does not exist and the size of the file if the file exists, which allows remote attackers to determine the existence of files on the… | EXPLOIT ✓MEDIUM 5.0EPSS 15.7% | 18 December 2004 |
| CVE-2004-1324 | The Microsoft Windows Media Player 9.0 ActiveX control may allow remote attackers to execute arbitrary web script in the Local computer zone via the (1) artist or (2) song fields of a music file, if the file is processed using Internet Explorer. | EXPLOIT ✓LOW 2.6EPSS 16.7% | 18 December 2004 |
| CVE-2004-1319 | The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a window, opening a child page whose target is the window with the given name, then injecting the script from the parent… | MEDIUM 5.0EPSS 26.9% | 15 December 2004 |
| CVE-2004-0633 | The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow. | EXPLOIT ✓MEDIUM 5.0EPSS 18.0% | 6 December 2004 |
| CVE-2004-0627 | The check_scramble_323 function in MySQL 4.1.x before 4.1.3, and 5.0, allows remote attackers to bypass authentication via a zero-length scrambled string. | EXPLOIT ✓HIGH 10.0EPSS 69.6% | 6 December 2004 |
| CVE-2004-0610 | The Web administration interface in Microsoft MN-500 Wireless Router allows remote attackers to cause a denial of service (connection refusal) via a large number of open HTTP connections. | MEDIUM 5.0EPSS 14.8% | 6 December 2004 |
| CVE-2004-0608 | The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier, Nerf Arena Blast 1.2 and earlier, Postal 2 1337 and earlier, Rune 107 and earlier, Tactical Ops 3.4.0 and earlier, Unreal 1 226f and… | EXPLOIT ×3 ✓HIGH 10.0EPSS 73.5% | 6 December 2004 |
| CVE-2004-0393 | Format string vulnerability in the msg function for rlpr daemon (rlprd) 2.0.4 allows remote attackers to execute arbitrary code via format string specifiers in a buffer that can not be resolved, which is provided to the syslog function. | EXPLOIT ×2 ✓HIGH 10.0EPSS 17.4% | 6 December 2004 |
| CVE-2003-1208 | Multiple buffer overflows in Oracle 9i 9 before 9.2.0.3 allow local users to execute arbitrary code by (1) setting the TIME_ZONE session parameter to a long value, or providing long parameters to the (2) NUMTOYMINTERVAL, (3) NUMTODSINTERVAL or (4)… | HIGH 10.0EPSS 13.2% | 3 December 2004 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.