2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2381PHP Surveyor 0.98 allows remote attackers to obtain sensitive information via a direct request to (1) question.php, (2) ...
CVE-2005-2380Multiple cross-site scripting vulnerabilities in PHP Surveyor 0.98 allow remote attackers to inject arbitrary web script...
CVE-2005-2368vim 6.3 before 6.3.082, with modelines enabled, allows external user-assisted attackers to execute arbitrary commands vi...
CVE-2005-2379Multiple cross-site scripting (XSS) vulnerabilities in Oracle Reports 9.0.2 allow remote attackers to inject arbitrary w...
CVE-2005-2378Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or r...
CVE-2005-2377nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems...
CVE-2005-2376Buffer overflow in Race Driver 1.20 and earlier allows remote attackers to cause a denial of service (application crash)...
CVE-2005-2375Format string vulnerability in Race Driver 1.20 and earlier allows remote attackers to cause a denial of service (applic...
CVE-2005-2374Belkin 54g wireless routers do not properly set an administrative password, which allows remote attackers to gain access...
CVE-2005-2369Multiple integer signedness errors in libgadu, as used in ekg before 1.6rc2 and other packages, may allow remote attacke...
CVE-2005-2373Buffer overflow in SlimFTPd 3.15 and 3.16 allows remote authenticated users to execute arbitrary code via a long directo...
CVE-2005-2370Multiple "memory alignment errors" in libgadu, as used in ekg before 1.6rc2, Gaim before 1.5.0, and other packages, allo...
CVE-2005-2371Directory traversal vulnerability in Oracle Reports 6.0, 6i, 9i, and 10g allows remote attackers to overwrite arbitrary ...
CVE-2005-2372Oracle Forms 4.5 through 10g starts form executables from arbitrary directories and executes them as the Oracle or Syste...
CVE-2005-1852Multiple integer overflows in libgadu, as used in Kopete in KDE 3.2.3 to 3.4.1, ekg before 1.6rc3, GNU Gadu, CenterICQ, ...
CVE-2005-2276Cross-site scripting (XSS) vulnerability in Novell Groupwise WebAccess 6.5 before July 11, 2005 allows remote attackers ...
CVE-2005-1849inftrees.h in zlib 1.2.2 allows remote attackers to cause a denial of service (application crash) via an invalid file th...
CVE-2005-1920HIGH7.5The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the ...
CVE-2005-2218The device file system (devfs) in FreeBSD 5.x does not properly check parameters of the node type when creating a device...
CVE-2005-2355Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2335, CVE-2005-2356. Reason: due to a typo in ...
CVE-2005-2327Cross-site scripting (XSS) vulnerability in e107 0.617 and earlier allows remote attackers to inject arbitrary web scrip...
CVE-2005-2333Cross-site scripting (XSS) vulnerability in smilies_popup.php in SEO-Board 1.0 allows remote attackers to inject arbitra...
CVE-2005-2334Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm...
CVE-2005-2330Directory traversal vulnerability in extras/update.php in osCommerce 2.2 allows remote attackers to read arbitrary files...
CVE-2005-2329MRV Communications In-Reach LX-8000S, LX-4000S, and LX-1000S 3.5.0, when using SSH public key authentication, does not p...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now