2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-1174MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of servi...
CVE-2005-1175Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote...
CVE-2005-1689CRITICAL9.8Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attacke...
CVE-2005-1914CenterICQ 4.20.0 and earlier creates temporary files with predictable file names, which allows local users to overwrite ...
CVE-2005-2291Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 passes the cleartext password as a parameter when starting sqlplus, which all...
CVE-2005-2281HIGH7.5WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords.
CVE-2005-2292Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and ...
CVE-2005-2293MEDIUM5.5Oracle Formsbuilder 9.0.4 stores database usernames and passwords in a temporary file, which is not deleted after it is ...
CVE-2005-2294Oracle Forms 4.5, 6.0, 6i, and 9i on Unix, when a large number of records are retrieved by an Oracle form, stores a copy...
CVE-2005-2277Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via sh...
CVE-2005-2270Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to exe...
CVE-2005-2273Opera 7.x and 8 before 8.01 does not clearly associate a Javascript dialog box with the web page that generated it, whic...
CVE-2005-2272Safari version 2.0 (412) does not clearly associate a Javascript dialog box with the web page that generated it, which a...
CVE-2005-2271iCab 2.9.8 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote a...
CVE-2005-2269Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node...
CVE-2005-2268Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that ...
CVE-2005-2267Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalon...
CVE-2005-2274Microsoft Internet Explorer 6.0 does not clearly associate a Javascript dialog box with the web page that generated it, ...
CVE-2005-2266Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame...
CVE-2005-2265Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of serv...
CVE-2005-2264Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox s...
CVE-2005-2095options_identities.php in SquirrelMail 1.4.4 and earlier uses the extract function to process the $_POST variable, which...
CVE-2005-2263The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a ...
CVE-2005-2262Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into...
CVE-2005-2261Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, Netscape 8.0.2, and K-Meleon 0.9 runs XBL scripts ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now