2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2005-10004HIGH8.8Cacti versions prior to 0.8.6-d contain a remote command execution vulnerability in the graph_view.php script. An authen...
CVE-2005-4890HIGH7.8There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via "su - user -c program". The u...
CVE-2005-2352HIGH8.1I race condition in Temp files was found in gs-gpl before 8.56 addons scripts.
CVE-2005-2349HIGH7.5Zoo 2.10 has Directory traversal
CVE-2005-4868HIGH7.1Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, whic...
CVE-2005-4860HIGH7.8Spectrum Cash Receipting System before 6.504 uses weak cryptography (static substitution) in the PASSFILE password file,...
CVE-2005-3803HIGH7.5Cisco IP Phone (VoIP) 7920 1.0(8) contains certain hard-coded ("fixed") public and private SNMP community strings that c...
CVE-2005-3716HIGH7.5The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public...
CVE-2005-3302HIGH7.3Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hi...
CVE-2005-3140HIGH7.5Procom NetFORCE 800 4.02 M10 Build 20 and possibly other versions sends the NIS password map (passwd.nis) as a file atta...
CVE-2005-2946HIGH7.5The default configuration on OpenSSL before 0.9.8 uses MD5 for creating message digests instead of a more cryptographica...
CVE-2005-2801HIGH7.5xattr.c in the ext2 and ext3 file system code for Linux kernel 2.6 does not properly compare the name_index fields when ...
CVE-2005-1920HIGH7.5The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the ...
CVE-2005-2281HIGH7.5WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords.
CVE-2005-2182HIGH7.5Grandstream BudgeTone (BT) 100 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in ...
CVE-2005-2181HIGH7.5Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY messag...
CVE-2005-2160HIGH7.5IMail stores usernames and passwords in cleartext in a cookie, which allows remote attackers to obtain sensitive informa...
CVE-2005-0772HIGH7.5VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attack...
CVE-2005-1306HIGH7.5The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of...
CVE-2005-1891HIGH7.5The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a de...
CVE-2005-1941HIGH7.8SilverCity before 0.9.5-r1 installs (1) cgi-styler-form.py, (2) cgi-styler.py, and (3) source2html.py with read and writ...
CVE-2005-1794HIGH7.4Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it ...
CVE-2005-1831HIGH8.4Sudo 1.6.8p7 on SuSE Linux 9.3, and possibly other Linux distributions, allows local users to gain privileges by using s...
CVE-2005-1828HIGH7.5D-Link DSL-504T stores usernames and passwords in cleartext in the router configuration file, which allows remote attack...
CVE-2005-1036HIGH7.8FreeBSD 5.x to 5.4 on AMD64 does not properly initialize the IO permission bitmap used to allow user access to certain h...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now