VRT 391,192 CVEs tracked · 15,442 in RASP scope · data as of 17 hours ago
Reset
More filters (3)
Columns
Published from 2004-01-01Published to 2004-12-31Has a public PoC
Overview 3 matches, all in RASP scope, all public PoC · 1 protected · 0 KEV · 0 CISA SSVC · 1 EPSS ≥ 0.5 · 0 disputed
3matches, all in RASP scope, all public PoC 1protected33.3% 0KEV0.0% 0CISA SSVC0.0% 1EPSS ≥ 0.533.3% 0disputed0.0%
Critical 0 0.0% High 1 33.3% Medium 2 66.7% Low 0 0.0% None 0 0.0% Unknown 0 0.0%
Protected by RASP 1 33.3% Rule in development 0 0.0% Mitigation candidate 2 66.7% No exploit published 0 0.0% No fix identified 0 0.0% Mitigated by environment configuration 0 0.0% Queued for review 0 0.0% Not applicable 0 0.0% Out of RASP scope 0 0.0% Rejected 0 0.0%
blocked by ARMR today 1 33.3% not blocked 2 66.7% not established 0 0.0% unrecorded 0 0.0%
Exploited in the wild 0 0.0% Working exploit published 3 100.0% Proof of concept only 0 0.0% Forecast only 0 0.0% No public exploit 0 0.0%
split by peak 1 / month
Unknown: 0None: 0Low: 0Medium: 2High: 1Critical: 0 Rejected: 0Out of RASP scope: 0Not applicable: 0Queued for review: 0Mitigated by environment configuration: 0No fix identified: 0No exploit published: 0Mitigation candidate: 2Rule in development: 0Protected by RASP: 1 unrecorded: 0not established: 0not blocked: 2blocked by ARMR today: 1 No public exploit: 0Forecast only: 0Proof of concept only: 0Working exploit published: 3Exploited in the wild: 0 February 2004: 1 CVE March 2004: 0 CVEs April 2004: 0 CVEs May 2004: 0 CVEs June 2004: 0 CVEs July 2004: 0 CVEs August 2004: 1 CVE September 2004: 0 CVEs October 2004: 0 CVEs November 2004: 0 CVEs December 2004: 1 CVE
Feb 04Mar 04Apr 04May 04Jun 04Jul 04Aug 04Sep 04Oct 04Nov 04Dec 04
3 matches CSV JSON
CVE Severity Published Status Exploitation Description
CVE-2004-2115 Medium 2004-12-31 Mitigation candidate Working exploit published Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attackers to execute arbitrary script as other users via the (1) action, (2) username, or (3) password parameters in an isqlplus request.
CVE-2004-1364 High 2004-08-04 Protected by RASP Working exploit published Directory traversal vulnerability in extproc in Oracle 9i and 10g allows remote attackers to access arbitrary libraries outside of the $ORACLE_HOME\bin directory.
CVE-2004-0095 Medium 2004-02-17 Mitigation candidate Working exploit published McAfee ePolicy Orchestrator agent allows remote attackers to cause a denial of service (memory consumption and crash) and possibly execute arbitrary code via an HTTP POST request with an invalid Content-Length value, possibly triggering a buffer overflow.