2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2203login.php in phpWishlist before 0.1.15 allows remote attackers to bypass authentication via a direct request to admin.ph...
CVE-2005-2202Cross-site scripting (XSS) vulnerability in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 35...
CVE-2005-2201Unknown vulnerability in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 3545, version 0.001.0...
CVE-2005-2200Multiple unknown vulnerabilities in the MicroServer Web Server for Xerox WorkCentre Pro Color 2128, 2636, and 3545, vers...
CVE-2005-2199PHP remote file inclusion vulnerability in inc/functions.inc.php in PPA web photo gallery 0.5.6 allows remote attackers ...
CVE-2005-1768Race condition in the ia32 compatibility code for the execve system call in Linux kernel 2.4 before 2.4.31 and 2.6 befor...
CVE-2005-2198PHP remote file inclusion vulnerability in lang.php in SPiD before 1.3.1 allows remote attackers to execute arbitrary co...
CVE-2005-2197SQL injection vulnerability in sql.cls.php in Id Board 1.1.3 allows remote attackers to modify SQL queries, as demonstra...
CVE-2005-2206Multiple SQL injection vulnerabilities in CartWIZ allow remote attackers to modify SQL statements via the (1) idProduct ...
CVE-2005-2193SQL injection vulnerability in the user profile edit module in profile.php for PunBB 1.2.5 and earlier allows remote att...
CVE-2005-2192SimplePHPBlog 0.4.0 stores password hashes in config/password.txt with insufficient access control, which allows remote ...
CVE-2005-2191Multiple cross-site scripting (XSS) vulnerabilities in Comersus shopping cart allow remote attackers to inject arbitrary...
CVE-2005-2181HIGH7.5Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY messag...
CVE-2005-2190Multiple SQL injection vulnerabilities in Comersus shopping cart allow remote attackers to execute arbitrary SQL command...
CVE-2005-2189Lantronix SecureLinx console server running firmware 2.0 and 3.0 stores /etc/ssh under the web document root with insuff...
CVE-2005-2188McAfee IntruShield Security Management System obtains the user ID from the URL, which allows remote attackers to guess t...
CVE-2005-2187McAfee IntruShield Security Management System allows remote authenticated users to access the "Generate Reports" feature...
CVE-2005-2186Multiple cross-site scripting (XSS) vulnerabilities in McAfee IntruShield Security Management System allow remote authen...
CVE-2005-2185eRoom does not set an expiration for Cookies, which allows remote attackers to capture cookies and conduct replay attack...
CVE-2005-2184eRoom 6.x does not properly restrict files that can be attached, which allows remote attackers to execute arbitrary comm...
CVE-2005-2183class.xmail.php in PhpXmail 0.7 through 1.1 does not properly handle large passwords, which prevents an error message fr...
CVE-2005-2180gen-index in GNATS 4.0, 4.1.0, and possibly earlier versions, when installed setuid, does not properly check files passe...
CVE-2005-2179PHP remote file inclusion vulnerability in BlogModel.php in Jaws 0.5.2 and earlier allows remote attackers to execute ar...
CVE-2005-2178probe.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the olddat parameter. NOTE:...
CVE-2005-2177Net-SNMP 5.0.x before 5.0.10.2, 5.2.x before 5.2.1.2, and 5.1.3, when net-snmp is using stream sockets such as TCP, allo...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now