2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-4851 | — | — | 0.9% | Dec 31, 2005 | eZ publish 3.4.4 through 3.7 before 20050722 applies certain permissions on the node level, which allows remote authenti... |
| CVE-2005-4850 | — | — | 1.0% | Dec 31, 2005 | eZ publish 3.5 through 3.7 before 20050608 requires both edit and create permissions in order to submit data, which allo... |
| CVE-2005-4849 | — | — | 2.5% | Dec 31, 2005 | Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter ... |
| CVE-2005-4848 | — | — | 3.3% | Dec 31, 2005 | Buffer overflow in the decompression algorithm in Research in Motion BlackBerry Enterprise Server 4.0 SP1 and earlier be... |
| CVE-2005-4847 | — | — | 1.3% | Dec 31, 2005 | Unspecified vulnerability in Spey 0.3.3 has unknown impact and attack vectors related to "A number of security holes whi... |
| CVE-2005-4846 | — | — | 1.9% | Dec 31, 2005 | Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possib... |
| CVE-2005-4845 | — | — | 1.7% | Dec 31, 2005 | The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remot... |
| CVE-2005-4844 | — | — | 12.5% | Dec 31, 2005 | The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creati... |
| CVE-2005-4843 | — | — | 11.3% | Dec 31, 2005 | The SmartConnect Class control allows remote attackers to cause a denial of service (Internet Explorer crash) by creatin... |
| CVE-2005-4842 | — | — | 9.3% | Dec 31, 2005 | The System Monitor Source Properties control allows remote attackers to cause a denial of service (Internet Explorer cra... |
| CVE-2005-4841 | — | — | 9.3% | Dec 31, 2005 | The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creat... |
| CVE-2005-4840 | — | — | 11.6% | Dec 31, 2005 | The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of s... |
| CVE-2005-4839 | — | — | 0.6% | Dec 31, 2005 | PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trig... |
| CVE-2005-4838 | — | — | 7.9% | Dec 31, 2005 | Multiple cross-site scripting (XSS) vulnerabilities in the example web applications for Jakarta Tomcat 5.5.6 and earlier... |
| CVE-2005-4837 | — | — | 9.8% | Dec 31, 2005 | snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in maste... |
| CVE-2005-4836 | — | — | 3.5% | Dec 31, 2005 | The HTTP/1.1 connector in Apache Tomcat 4.1.15 through 4.1.40 does not reject NULL bytes in a URL when allowLinking is c... |
| CVE-2005-4835 | — | — | 1.7% | Dec 31, 2005 | The ath_rate_sample function in the ath_rate/sample/sample.c sample code in MadWifi before 0.9.3 allows remote attackers... |
| CVE-2005-4766 | — | — | 1.4% | Dec 31, 2005 | BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP5 and earlier, do not encrypt multicast traffic,... |
| CVE-2005-4833 | — | — | 1.3% | Dec 31, 2005 | IBM WebSphere Application Server (WAS) 6.0 before 20050201, when serving pages in an Application WAR or an Extended Docu... |
| CVE-2005-4813 | — | — | 1.8% | Dec 31, 2005 | Unspecified vulnerability in Report Application Server (Crystalras.exe) before 11.0.0.1370, as used in Business Objects ... |
| CVE-2005-4831 | — | — | 1.1% | Dec 31, 2005 | viewcvs in ViewCVS 0.9.2 allows remote attackers to set the Content-Type header to arbitrary values via the content-type... |
| CVE-2005-4771 | — | — | 0.3% | Dec 31, 2005 | Trusted Mobility Agent PC Policy in Trust Digital Trusted Mobility Suite provides a cancel button that bypasses the doma... |
| CVE-2005-4829 | — | — | 1.3% | Dec 31, 2005 | VirtueMart before 1.0.1 does not properly handle errors when a user is forbidden to read a requested page, which has unk... |
| CVE-2005-4715 | — | — | 3.8% | Dec 31, 2005 | Multiple SQL injection vulnerabilities in modules.php in PHP-Nuke 7.8, when magic_quotes_gpc is disabled, allow remote a... |
| CVE-2005-4708 | — | — | 1.2% | Dec 31, 2005 | Adobe Macromedia MX 2004 products, Captivate, Contribute 2, Contribute 3, and eLicensing client install the Macromedia L... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now