2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2288Cross-site scripting (XSS) vulnerability in PHPCounter 7.2 allows remote attackers to inject arbitrary web script or HTM...
CVE-2005-2195Apple Darwin Streaming Server 5.5 and earlier allows remote attackers to cause a denial of service (application crash) v...
CVE-2005-1914CenterICQ 4.20.0 and earlier creates temporary files with predictable file names, which allows local users to overwrite ...
CVE-2005-2289PHPCounter 7.2 allows remote attackers to obtain sensitive information via a direct request to prelims.php, which reveal...
CVE-2005-2296YabbSE 1.5.5c allows remote attackers to obtain sensitive information via a direct request to ssi_examples.php, which re...
CVE-2005-2295NetPanzer 0.8 and earlier allows remote attackers to cause a denial of service (infinite loop) via a packet with a zero ...
CVE-2005-2280Cisco Security Agent (CSA) 4.5 allows remote attackers to cause a denial of service (system crash) via a crafted IP pack...
CVE-2005-1175Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote...
CVE-2005-2287SoftiaCom wMailServer 1.0 and 2.0 allows remote attackers to cause a denial of service (application crash) via a large T...
CVE-2005-2294Oracle Forms 4.5, 6.0, 6i, and 9i on Unix, when a large number of records are retrieved by an Oracle form, stores a copy...
CVE-2005-2283WebEOC before 6.0.2 does not properly restrict the size of an uploaded file, which allows remote authenticated users to ...
CVE-2005-2286WebEOC before 6.0.2 does not properly check user authorization, which allows remote attackers to gain privileges via a d...
CVE-2005-2279Cisco ONS 15216 Optical Add/Drop Multiplexer (OADM) running firmware 2.2.2 and earlier allows remote attackers to cause ...
CVE-2005-2282Multiple cross-site scripting (XSS) vulnerabilities in WebEOC before 6.0.2 allow remote attackers to inject arbitrary we...
CVE-2005-2285WebEOC before 6.0.2 stores sensitive information in locations such as URIs, web pages, and configuration files, which al...
CVE-2005-1174MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of servi...
CVE-2005-2278Stack-based buffer overflow in the IMAP daemon (imapd) in MailEnable Professional 1.54 allows remote authenticated users...
CVE-2005-2292Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and ...
CVE-2005-2284Multiple SQL injection vulnerabilities in WebEOC before 6.0.2 allow remote attackers to modify SQL statements via unknow...
CVE-2005-2291Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which all...
CVE-2005-2290wps_shop.cgi in WPS Web Portal System 0.7.0 allows remote attackers to execute arbitrary commands via shell metacharacte...
CVE-2005-2277Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via sh...
CVE-2005-2262Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into...
CVE-2005-2263The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a ...
CVE-2005-2264Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox s...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now