2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2437Website Baker Project does not properly verify the file extensions of uploaded files, which allows remote attackers to u...
CVE-2005-2436browse.php in Website Baker Project allows remote attackers to obtain sensitive data via (1) a directory that does not e...
CVE-2005-2435Cross-site scripting (XSS) vulnerability in browse.php in Website Baker Project allows remote attackers to inject arbitr...
CVE-2005-2434Linksys WRT54G router uses the same private key and certificate for every router, which allows remote attackers to sniff...
CVE-2005-2433PhpList allows remote attackers to obtain sensitive information via a direct request to (1) about.php, (2) connect.php, ...
CVE-2005-2432SQL injection vulnerability in PhpList allows remote attackers to modify SQL statements via the id argument to admin pag...
CVE-2005-2431The (1) lost password and (2) account pending features in GForge 4.5 do not properly set a limit on the number of e-mail...
CVE-2005-2430Multiple cross-site scripting (XSS) vulnerabilities in GForge 4.5 allow remote attackers to inject arbitrary web script ...
CVE-2005-2429Firefox, when opening Microsoft Word documents, does not properly set the permissions on shared sections, which allows r...
CVE-2005-2428Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores sensitive data from names.nsf in hid...
CVE-2005-2427Cross-site scripting (XSS) vulnerability in viewCart.asp in CartWIZ allows remote attackers to inject arbitrary web scri...
CVE-2005-2426FTPshell Server 3.38 allows remote authenticated users to cause a denial of service (application crash) by multiple conn...
CVE-2005-2425Stack-based buffer overflow in Ares FileShare 1.1 allows remote attackers or local users to execute arbitrary code via a...
CVE-2005-2422Cross-site scripting (XSS) vulnerability in index.php in Beehive Forum allows remote attackers to inject arbitrary web s...
CVE-2005-2421Multiple SQL injection vulnerabilities in index.php and other pages in Beehive Forum allow remote attackers to execute a...
CVE-2005-2420flsearch.pl in FtpLocate 2.02 allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP ...
CVE-2005-2419B-FOCuS Router 312+ allows remote attackers to bypass authentication and gain unauthorized access via a direct request t...
CVE-2005-2417Contrexx before 1.0.5 allows remote attackers to obtain sensitive information via a direct request to /config/version.xm...
CVE-2005-2447Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2370. Reason: This candidate is a duplicate of...
CVE-2005-2446Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2369. Reason: This candidate is a duplicate of...
CVE-2005-2439SQL injection vulnerability in UseBB 0.5.1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to ex...
CVE-2005-2346Buffer overflow in Novell GroupWise 6.5 Client allows remote attackers to execute arbitrary code via a GWVW02xx.INI lang...
CVE-2005-2416Multiple cross-site scripting (XSS) vulnerabilities in Contrexx before 1.0.5 allow remote attackers to inject arbitrary ...
CVE-2005-2132RPC portmapper (rpcbind) in SCO UnixWare 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2 allows remote attackers or local users to ca...
CVE-2005-2415Multiple SQL injection vulnerabilities in Contrexx before 1.0.5 allow remote attackers to execute arbitrary SQL commands...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now