2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2164SQL injection vulnerability in Covide Groupware-CRM allows remote attackers to execute arbitrary SQL commands via unknow...
CVE-2005-2163Cross-site scripting (XSS) vulnerability in index.php in AutoIndex PHP Script 1.5.2 allows remote attackers to inject ar...
CVE-2005-2162PHP remote file inclusion vulnerability in form.inc.php3 in MyGuestbook 0.6.1 allows remote attackers to execute arbitra...
CVE-2005-2161Cross-site scripting (XSS) vulnerability in phpBB 2.0.16 allows remote attackers to inject arbitrary web script or HTML ...
CVE-2005-2159mshftp.dll in PlanetDNS PlanetFileServer 2.0.1.3 allows remote attackers to cause a denial of service (application crash...
CVE-2005-2158A regression error in the embedded HSQLDB in JBoss jBPM 2.0 allows remote attackers to execute arbitrary comands, a re-i...
CVE-2005-2157PHP remote file inclusion vulnerability in survey.inc.php for nabopoll 1.2 allows remote attackers to execute arbitrary ...
CVE-2005-2156SQL injection vulnerability in news.php in PHPNews 1.2.5 allows remote attackers to execute arbitrary SQL commands via t...
CVE-2005-2155PHP remote file inclusion vulnerability in EasyPHPCalendar 6.1.5 and earlier allows remote attackers to execute arbitrar...
CVE-2005-2154PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote...
CVE-2005-2152SQL injection vulnerability in Geeklog before 1.3.11 allows remote attackers to execute arbitrary SQL commands via user ...
CVE-2005-2153SQL injection vulnerability in class.ticket.php in osTicket 1.3.1 beta and earlier allows remote attackers to execute ar...
CVE-2005-2151spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records...
CVE-2005-2149config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session in...
CVE-2005-2148Cacti 0.8.6e and earlier does not perform proper input validation to protect against common attacks, which allows remote...
CVE-2005-2096zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream...
CVE-2005-2147Trac before 0.8.4 allows remote attackers to read or upload arbitrary files via a full pathname in the id parameter to t...
CVE-2005-2140Directory traversal vulnerability in default.asp for FSboard 2.0 allows remote attackers to read arbitrary files via ".....
CVE-2005-1922The MS-Expand file handling in Clam AntiVirus (ClamAV) before 0.86 allows remote attackers to cause a denial of service ...
CVE-2005-1921Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PH...
CVE-2005-1917kpopper 1.0 and earlier allows local users to create and overwrite arbitrary files via a symlink attack on the .popper-n...
CVE-2005-2019ipfw in FreeBSD 5.4, when running on Symmetric Multi-Processor (SMP) or Uni Processor (UP) systems with the PREEMPTION k...
CVE-2005-1931GoodTech SMTP Server 5.14 allows remote attackers to cause a denial of service (application crash) via a RCPT TO command...
CVE-2005-1923The ENSURE_BITS macro in mszipd.c for Clam AntiVirus (ClamAV) 0.83, and other versions vefore 0.86, allows remote attack...
CVE-2005-2068FreeBSD 4.x through 4.11 and 5.x through 5.4 allows remote attackers to modify certain TCP options via a TCP packet with...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now