2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-1961——Unknown vulnerability in ObjectWeb Consortium C-JDBC before 1.3.1 allows local users to bypass intended access restricti...
CVE-2005-1890——Unknown vulnerability in Mortiforo before 0.9.1 allows users to access private forums via unknown attack vectors.
CVE-2005-1869——PHP remote file inclusion vulnerability in start_lobby.php in MWChat 6.x allows remote attackers to execute arbitrary PH...
CVE-2005-1881——upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which...
CVE-2005-1877——Cross-site scripting (XSS) vulnerability in view_ticket.php in Lpanel 1.59 and earlier allows remote attackers to inject...
CVE-2005-1885——view.php in YaPiG 0.92b, 0.93u and 0.94u allows remote attackers to obtain sensitive information via a phid parameter th...
CVE-2005-1888——Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.5 allows remote attackers to inject arbitrary web scrip...
CVE-2005-1880MEDIUM5.5everybuddy 0.4.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file cr...
CVE-2005-1910——SQL injection vulnerability in login.asp for WWWeb Concepts Events System 1.0 allows remote attackers to execute arbitra...
CVE-2005-1872——Buffer overflow in the administrative console in IBM WebSphere Application Server 5.x, when the global security option i...
CVE-2005-1858——FUSE 2.x before 2.3.0 does not properly clear previously used memory from unfilled pages when the filesystem returns a s...
CVE-2005-1334——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1579. Reason: This candidate is a duplicate of...
CVE-2005-1875——Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitra...
CVE-2005-1906——SQL injection vulnerability in login.asp in livingmailing 1.3 allows remote attackers to execute arbitrary SQL commands ...
CVE-2005-1903——Buffer overflow in the IMAP service for SPA-PRO Mail @Solomon 4.00 allows remote authenticated users to execute arbitrar...
CVE-2005-1840——Directory traversal vulnerability in class.layout_phpcms.php in phpCMS 1.2.x before 1.2.1pl2 allows remote attackers to ...
CVE-2005-1839——Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 allow remote attackers to execute arbitrar...
CVE-2005-1838——Multiple cross-site scripting vulnerabilities in castnewPost.asp in Liberum Help Desk 0.97.3 allow remote attackers to i...
CVE-2005-1824——The sql_escape_string function in auth/sql.c for the mailutils SQL authentication module does not properly quote the "\"...
CVE-2005-1834——SQL injection vulnerability in login.asp in NEXTWEB (i)Site allows remote attackers to execute arbitrary SQL commands an...
CVE-2005-1818——Multiple SQL injection vulnerabilities in NewLife Blogger before 3.3.1 allow remote attackers to execute arbitrary SQL c...
CVE-2005-1819——Cross-site scripting (XSS) vulnerability in NikoSoft WebMail before 0.11.0 allows remote attackers to inject arbitrary w...
CVE-2005-1809——Sony Ericsson P900 Beamer allows remote attackers to cause a denial of service (panic) via an obexftp session with a lon...
CVE-2005-1810——SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arb...
CVE-2005-1820——zboard.php in Zeroboard version 4.1pl2 to 4.1pl5 allows remote attackers to execute arbitrary PHP code via improper quot...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now