month report
April 2004
Data as of Jun 11, 2026, 06:04 UTCSnapshot v1 Sources CVEList V5+NVD+GHSA+CSAF+FSTEC BDU+CISA KEV+EPSS+Nuclei templates Methodology →
April 2004 closed with 61 published CVEs. 7 criticals, microsoft led volume, mostly via windows 2000. Top weakness class — CWE-125 (2 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
61
— MoM— YoY
Severity mix
7 / 20
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
0.0%
0 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
—
n=0
Within 7 days
—%
Within 30 days
—%
Days → KEV (median)
—
n=0
Weakness × Vendor
What's spreading where in April 2004
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
Most discussed CVEs — April 2004
No CVE mentions in the news this month yet.
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #4gentoo foundation inc.5 CVE
- #7cvs2 CVE
- #9kame2 CVE
- #11ssmtp2 CVE
- #12tcpdump2 CVE
- #13activestate1 CVE
- #14andrew tridgell1 CVE
- #17fte1 CVE
- #18gentoo1 CVE
- #20interchange development group1 CVE
Top vendors
Ranked by distinct CVE count this period.
- 21 CVE2 critCVSS 6.8PoC 1windows 2000 (15) · windows xp (13) · windows nt (9)
- 9 CVE1 critCVSS 4.7debian gnu/linux (9)
- 7 CVECVSS 3.6linux kernel (7)
- 5 CVECVSS 3.9NEWgentoo linux (5)
- 3 CVE1 critCVSS 6.0mysql (2) · e-business suite (1) · application server web cache (1)
- 2 CVECVSS 7.2mac os x (2)
- 2 CVECVSS 3.8NEWcvs (2)
- 2 CVE1 critCVSS 8.4debian linux (2)
- 2 CVECVSS 6.3NEWracoon (2)
- 2 CVECVSS 5.9PoC 1helix universal server (1) · realone player (1) · realplayer (1)
- 2 CVECVSS 3.5NEWssmtp (2)
- 2 CVECVSS 5.0NEWtcpdump (2)
- 1 CVE1 critCVSS 10.0NEWactiveperl (1)
- 1 CVECVSS 5.0NEWrsync (1)
- 1 CVE1 critCVSS 10.0hosting solution engine (1) · wireless lan solution engine (1)
- 1 CVECVSS 2.1freebsd (1)
- 1 CVE1 critCVSS 10.0NEWfte text editor (1)
- 1 CVE1 critCVSS 10.0NEWlinux (1)
- 1 CVECVSS 5.0mailman (1)
- 1 CVECVSS 6.4NEWinterchange (1)
- 1 CVECVSS 5.0heimdal (1)
- 1 CVE1 critCVSS 10.0NEWperl (1)
- 1 CVECVSS 2.6coldfusion (1)
- 1 CVE1 critCVSS 10.0mandrake linux (1)
- 1 CVECVSS 7.5NEWepolicy orchestrator (1)
- 1 CVE1 critCVSS 10.0NEWmplayer (1)
- 1 CVECVSS 2.1NEWmysql (1)
- 1 CVECVSS 5.0NEWoftpd (1)
- 1 CVECVSS 7.5NEWpam-pgsql (1)
- 1 CVECVSS 1.2NEWlogcheck (1)
- 1 CVECVSS 6.8red hat enterprise linux (1)
- 1 CVECVSS 7.2propack (1)
- 1 CVECVSS 7.2NEWslackware linux (1)
- 1 CVECVSS 5.0NEWstoryserver (1) · vignette (1)
- 1 CVECVSS 6.8NEWneon (1)
- 1 CVECVSS 7.5NEWxchat (1)
- 1 CVECVSS 4.6NEWxonix (1)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | microsoft | 21 | 2 | · | · | PoC 1 | windows 2000 (15) · windows xp (13) · windows nt (9) | — | |
| 2 | сообщество свободного программного обеспечения | 9 | 1 | · | · | debian gnu/linux (9) | — | ||
| 3 | linux | 7 | · | · | · | linux kernel (7) | — | ||
| 4 | gentoo foundation inc. | 5 | · | · | · | NEW | gentoo linux (5) | — | |
| 5 | oracle | 3 | 1 | · | · | mysql (2) · e-business suite (1) · application server web cache (1) | — | ||
| 6 | apple | 2 | · | · | · | mac os x (2) | — | ||
| 7 | cvs | 2 | · | · | · | NEW | cvs (2) | — | |
| 8 | debian | 2 | 1 | · | · | debian linux (2) | — | ||
| 9 | kame | 2 | · | · | · | NEW | racoon (2) | — | |
| 10 | realnetworks | 2 | · | · | · | PoC 1 | helix universal server (1) · realone player (1) · realplayer (1) | — | |
| 11 | ssmtp | 2 | · | · | · | NEW | ssmtp (2) | — | |
| 12 | tcpdump | 2 | · | · | · | NEW | tcpdump (2) | — | |
| 13 | activestate | 1 | 1 | · | · | NEW | activeperl (1) | — | |
| 14 | andrew tridgell | 1 | · | · | · | NEW | rsync (1) | — | |
| 15 | cisco | 1 | 1 | · | · | hosting solution engine (1) · wireless lan solution engine (1) | — | ||
| 16 | freebsd | 1 | · | · | · | freebsd (1) | — | ||
| 17 | fte | 1 | 1 | · | · | NEW | fte text editor (1) | — | |
| 18 | gentoo | 1 | 1 | · | · | NEW | linux (1) | — | |
| 19 | gnu | 1 | · | · | · | mailman (1) | — | ||
| 20 | interchange development group | 1 | · | · | · | NEW | interchange (1) | — | |
| 21 | kth | 1 | · | · | · | heimdal (1) | — | ||
| 22 | larry wall | 1 | 1 | · | · | NEW | perl (1) | — | |
| 23 | macromedia | 1 | · | · | · | coldfusion (1) | — | ||
| 24 | mandrakesoft | 1 | 1 | · | · | mandrake linux (1) | — | ||
| 25 | mcafee | 1 | · | · | · | NEW | epolicy orchestrator (1) | — | |
| 26 | mplayer | 1 | 1 | · | · | NEW | mplayer (1) | — | |
| 27 | mysql | 1 | · | · | · | NEW | mysql (1) | — | |
| 28 | oftpd | 1 | · | · | · | NEW | oftpd (1) | — | |
| 29 | pam-pgsql | 1 | · | · | · | NEW | pam-pgsql (1) | — | |
| 30 | psionic | 1 | · | · | · | NEW | logcheck (1) | — | |
| 31 | redhat | 1 | · | · | · | red hat enterprise linux (1) | — | ||
| 32 | sgi | 1 | · | · | · | propack (1) | — | ||
| 33 | slackware | 1 | · | · | · | NEW | slackware linux (1) | — | |
| 34 | vignette | 1 | · | · | · | NEW | storyserver (1) · vignette (1) | — | |
| 35 | webdav | 1 | · | · | · | NEW | neon (1) | — | |
| 36 | xchat | 1 | · | · | · | NEW | xchat (1) | — | |
| 37 | xonix | 1 | · | · | · | NEW | xonix (1) | — |
Sectors
Solution categories ranked by distinct CVE count this period.
- Operating Systems40 CVE7 crit11 vendorsCVSS 6.8windows 2000 (15) · windows xp (13) · windows nt (9)
- OSS Libraries5 CVE2 crit5 vendorsCVSS 7.0tcpdump (2) · activeperl (1) · mailman (1)
- Consumer Software5 CVE1 crit4 vendorsCVSS 6.1coldfusion (1) · helix universal server (1) · mplayer (1)
- 2 crit3 vendorsCVSS 10.0racoon (2)
- Databases3 CVE2 crit2 vendorsCVSS 5.3mysql (3) · application server web cache (1) · e-business suite (1)
- Communications3 CVE2 vendorsCVSS 7.5ssmtp (2)
- DevTools & CI3 CVE1 crit2 vendorsCVSS 10.0cvs (2)
- Mobile Apps2 CVE1 vendorsCVSS 7.2mac os x (2)
- Web & CMS Plugins2 CVE2 vendorsCVSS 6.4interchange (1)
- Security Products2 CVE2 vendorsCVSS 7.5epolicy orchestrator (1)
| Sector | CVEs | Crit | KEV | Vendors | Products | Avg CVSS | Top products |
|---|---|---|---|---|---|---|---|
| Operating Systems▸ 3 | 40 | 7 | · | 11 | 24 | 6.8 | windows 2000 (15) · windows xp (13) · windows nt (9) |
| OSS Libraries▸ 1 | 5 | 2 | · | 5 | 5 | 7.0 | tcpdump (2) · activeperl (1) · mailman (1) |
| Consumer Software▸ 2 | 5 | 1 | · | 4 | 6 | 6.1 | coldfusion (1) · helix universal server (1) · mplayer (1) |
| Networking Infrastructure▸ 3 | 4 | 2 | · | 3 | 4 | 10.0 | racoon (2) |
| Databases▸ 1 | 3 | 2 | · | 2 | 3 | 5.3 | mysql (3) · application server web cache (1) · e-business suite (1) |
| Communications▸ 2 | 3 | · | · | 2 | 2 | 7.5 | ssmtp (2) |
| DevTools & CI▸ 2 | 3 | 1 | · | 2 | 2 | 10.0 | cvs (2) |
| Mobile Apps▸ 1 | 2 | · | · | 1 | 1 | 7.2 | mac os x (2) |
| Web & CMS Plugins▸ 2 | 2 | · | · | 2 | 3 | 6.4 | interchange (1) |
| Security Products▸ 2 | 2 | · | · | 2 | 2 | 7.5 | epolicy orchestrator (1) |
Weakness × Sector
Which weaknesses hit which solution categories in April 2004
Cells shaded by share of the sector's hottest weakness. Click a row to open the sector history.
125Out-of-bounds Read476NULL Pointer Dereference119Memory Buffer Bounds134Format String191CWE-191401CWE-40188CWE-8889SQL InjectionOperating Systems111111Consumer Software1CommunicationsOSS Libraries211Networking InfrastructureDatabasesDevTools & CISecurity ProductsWeb & CMS PluginsEnterprise Software