2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2543——Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitr...
CVE-2005-2542——Invision Power Board (IPB) 1.0.3 allows remote attackers to inject arbitrary web script or HTML via an attachment, which...
CVE-2005-2541——Tar 1.15.1 does not properly warn the user when extracting setuid or setgid files, which may allow local users or remote...
CVE-2005-2540——CRLF injection vulnerability in FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to execute arbitrar...
CVE-2005-2539——Multiple cross-site scripting (XSS) vulnerabilities in FlatNuke 2.5.5 and possibly earlier versions allow remote attacke...
CVE-2005-2538——FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to obtain sensitive information via (1) a null byte...
CVE-2005-2537——FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to obtain sensitive information via a direct reques...
CVE-2005-2536——pstotext before 1.8g does not properly use the "-dSAFER" option when calling Ghostscript to extract plain text from Post...
CVE-2005-2535——Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execu...
CVE-2005-2367——Format string vulnerability in the proto_item_set_text function in Ethereal 0.9.4 through 0.10.11, as used in multiple d...
CVE-2005-1218——The Microsoft Windows kernel in Microsoft Windows 2000 Server, Windows XP, and Windows Server 2003 allows remote attacke...
CVE-2005-1990——Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to cause a denial of service (application crash) and possibl...
CVE-2005-1989——Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to obtain information and possibly ...
CVE-2005-1988——Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to execute arbitrary code via a web...
CVE-2005-1984——Buffer overflow in the Print Spooler service (Spoolsv.exe) for Microsoft Windows 2000, Windows XP, and Windows Server 20...
CVE-2005-1983——Stack-based buffer overflow in the Plug and Play (PnP) service for Microsoft Windows 2000 and Windows XP Service Pack 1 ...
CVE-2005-1982——Unknown vulnerability in the PKINIT Protocol for Microsoft Windows 2000, Windows XP, and Windows Server 2003 could allow...
CVE-2005-1981——Unknown vulnerability in Microsoft Windows 2000 Server and Windows Server 2003 domain controllers allows remote authenti...
CVE-2005-2500——Buffer overflow in the xdr_xcode_array2 function in xdr.c in Linux kernel 2.6.12, as used in SuSE Linux Enterprise Serve...
CVE-2005-2484——Buffer overflow in the rdb_query function for Denora IRC Stats 1.0 might allow attackers to execute arbitrary code.
CVE-2005-2486——SQL injection vulnerability in mod_forum/read_message.php in PortailPHP allows remote attackers to execute arbitrary SQL...
CVE-2005-2487——Unknown vulnerability in Sun McData switches and directors 4300, 4500, 6064, and 6140 before E/OS 6.0.0 may allow attack...
CVE-2005-2489——Web Content Management News System allows remote attackers to create arbitrary accounts and gain privileges via a direct...
CVE-2005-2485——Cross-site scripting (XSS) vulnerability in the Helpdesk in Logicampus before 1.1.1 allows remote attackers to inject ar...
CVE-2005-2482——The StateToOptions function in msfweb in Metasploit Framework 2.4 and earlier, when running with the -D option (defanged...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now