2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-1890——Unknown vulnerability in Mortiforo before 0.9.1 allows users to access private forums via unknown attack vectors.
CVE-2005-1869——PHP remote file inclusion vulnerability in start_lobby.php in MWChat 6.x allows remote attackers to execute arbitrary PH...
CVE-2005-1885——view.php in YaPiG 0.92b, 0.93u and 0.94u allows remote attackers to obtain sensitive information via a phid parameter th...
CVE-2005-1888——Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.5 allows remote attackers to inject arbitrary web scrip...
CVE-2005-1877——Cross-site scripting (XSS) vulnerability in view_ticket.php in Lpanel 1.59 and earlier allows remote attackers to inject...
CVE-2005-1881——upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which...
CVE-2005-1910——SQL injection vulnerability in login.asp for WWWeb Concepts Events System 1.0 allows remote attackers to execute arbitra...
CVE-2005-1872——Buffer overflow in the administrative console in IBM WebSphere Application Server 5.x, when the global security option i...
CVE-2005-1334——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1579. Reason: This candidate is a duplicate of...
CVE-2005-1858——FUSE 2.x before 2.3.0 does not properly clear previously used memory from unfilled pages when the filesystem returns a s...
CVE-2005-1903——Buffer overflow in the IMAP service for SPA-PRO Mail @Solomon 4.00 allows remote authenticated users to execute arbitrar...
CVE-2005-1906——SQL injection vulnerability in login.asp in livingmailing 1.3 allows remote attackers to execute arbitrary SQL commands ...
CVE-2005-1840——Directory traversal vulnerability in class.layout_phpcms.php in phpCMS 1.2.x before 1.2.1pl2 allows remote attackers to ...
CVE-2005-1839——Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 allow remote attackers to execute arbitrar...
CVE-2005-1838——Multiple cross-site scripting vulnerabilities in castnewPost.asp in Liberum Help Desk 0.97.3 allow remote attackers to i...
CVE-2005-1824——The sql_escape_string function in auth/sql.c for the mailutils SQL authentication module does not properly quote the "\"...
CVE-2005-1875——Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitra...
CVE-2005-1788——SQL injection vulnerability in resellerresources.asp in Hosting Controller 6.1 Hotfix 2.0 allows remote attackers to exe...
CVE-2005-1837——Fortinet firewall running FortiOS 2.x contains a hardcoded username with the password set to the serial number, which al...
CVE-2005-1836——NEXTWEB (i)Site allows remote attackers to cause a denial of service (error 500) via a crafted HTTP request, possibly in...
CVE-2005-1835——NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attac...
CVE-2005-1834——SQL injection vulnerability in login.asp in NEXTWEB (i)Site allows remote attackers to execute arbitrary SQL commands an...
CVE-2005-1823——Multiple cross-site scripting (XSS) vulnerabilities in Qualiteam X-Cart 4.0.8 allow remote attackers to inject arbitrary...
CVE-2005-1822——Multiple SQL injection vulnerabilities in Qualiteam X-Cart 4.0.8 allow remote attackers to execute arbitrary SQL command...
CVE-2005-1821——PHP remote file inclusion vulnerability in pdl_header.inc.php in PowerDownload 3.0.2 and 3.0.3 allows remote attackers t...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now