2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2334——Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm...
CVE-2005-2330——Directory traversal vulnerability in extras/update.php in osCommerce 2.2 allows remote attackers to read arbitrary files...
CVE-2005-2333——Cross-site scripting (XSS) vulnerability in smilies_popup.php in SEO-Board 1.0 allows remote attackers to inject arbitra...
CVE-2005-2311——SMS 1.9.2m and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) request1 or (2) r...
CVE-2005-2305——DG Remote Control Server 1.6.2 allows remote attackers to cause a denial of service (crash or CPU consumption) and possi...
CVE-2005-1530——Sophos Anti-Virus 5.0.1, with "Scan inside archive files" enabled, allows remote attackers to cause a denial of service ...
CVE-2005-2196——The Apple AirPort card uses a default WEP key when not connected to a known or trusted network, which can cause it to au...
CVE-2005-1850——Certain contributed scripts for ekg Gadu Gadu client 1.5 and earlier create temporary files insecurely, with unknown imp...
CVE-2005-1851——A certain contributed script for ekg Gadu Gadu client 1.5 and earlier allows attackers to execute shell commands via unk...
CVE-2005-2303——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1218. Reason: This candidate is a duplicate of...
CVE-2005-2326——Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web scr...
CVE-2005-2325——Clever Copy 2.0 and 2.0a allows remote attackers to obtain the full path of the web root via a direct request to (1) tic...
CVE-2005-2324——Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web scr...
CVE-2005-2323——Multiple SQL injection vulnerabilities in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allow ...
CVE-2005-2322——Cross-site scripting (XSS) vulnerability in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allo...
CVE-2005-2321——PHP remote file inclusion vulnerability in CaLogic 1.2.2 allows remote attackers to execute arbitrary code via the CLPAT...
CVE-2005-2320——WebCalendar before 1.0.0 does not properly restrict access to assistant_edit.php, which allows remote attackers to gain ...
CVE-2005-2319——PHP remote file include vulnerability in Yawp library 1.0.6 and earlier, as used in YaWiki and possibly other products, ...
CVE-2005-2318——Cross-site scripting (XSS) vulnerability in showerr.asp in DVBBS 7.1 SP2 allows remote attackers to inject arbitrary web...
CVE-2005-2317——Shorewall 2.4.x before 2.4.1, 2.2.x before 2.2.5, and 2.0.x before 2.0.17, when MACLIST_TTL is greater than 0 or MACLIST...
CVE-2005-2314——inc.login.php in PHPsFTPd 0.2 through 0.4 allows remote attackers to obtain the administrator's username and password by...
CVE-2005-2313——Check Point SecuRemote NG with Application Intelligence R54 allows attackers to obtain credentials and gain privileges v...
CVE-2005-2312——management.php in Realnode Emilda 1.2.2 and earlier allows remote attackers to perform actions as other users by modifyi...
CVE-2005-2310——Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arb...
CVE-2005-2297——Stack-based buffer overflow in TreeAction.do in Sybase EAServer 4.2.5 through 5.2 allows remote authenticated users to e...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now