2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-1739The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a de...
CVE-2005-1740fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the conte...
CVE-2005-1741Gearbox Software Halo: Combat Evolved 1.6 allows remote attackers to cause a denial of service (infinite loop) via malfo...
CVE-2005-1742BEA WebLogic Server and WebLogic Express 8.1 SP2 and SP3 allows users with the Monitor security role to "shrink or reset...
CVE-2005-1743BEA WebLogic Server and WebLogic Express 8.1 through Service Pack 3 and 7.0 through Service Pack 5 does not properly han...
CVE-2005-1745The UserLogin control in BEA WebLogic Portal 8.1 through Service Pack 3 prints the password to standard output when an i...
CVE-2005-1746The cluster cookie parsing code in BEA WebLogic Server 7.0 through Service Pack 5 attempts to contact any host or port s...
CVE-2005-1747Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Server and Express 8.1 through Service Pack 4, and 7...
CVE-2005-1748The embedded LDAP server in BEA WebLogic Server and Express 8.1 through Service Pack 4, and 7.0 through Service Pack 5, ...
CVE-2005-1749Buffer overflow in BEA WebLogic Server and WebLogic Express 6.1 Service Pack 4 allows remote attackers to cause a denial...
CVE-2005-1713Multiple cross-site scripting (XSS) vulnerabilities in Serendipity 0.8 allow remote attackers to inject arbitrary web sc...
CVE-2005-1706Unknown vulnerability in MailScanner 4.41.3 and earlier, related to "incomplete reporting of viruses in zip files," allo...
CVE-2005-1705gdb before 6.3 searches the current working directory to load the .gdbinit configuration file, which allows local users ...
CVE-2005-1703Warrior Kings: Battles 1.23 and earlier allows remote attackers to cause a denial of service (server crash) via a partia...
CVE-2005-1702Format string vulnerability in Warrior Kings: Battles 1.23 and earlier and Warrior Kings 1.3 and earlier allows remote a...
CVE-2005-1732Cookie Cart allows remote attackers to read the Order Notification list via the testmycgi and path parameters to testmy....
CVE-2005-1733Cookie Cart stores the password file under the web document root with insufficient access control, which allows remote a...
CVE-2005-1696Multiple cross-site scripting (XSS) vulnerabilities in PostNuke 0.750 and 0.760RC3 allow remote attackers to inject arbi...
CVE-2005-1734Multiple SQL injection vulnerabilities in PROMS before 0.11 allow remote attackers to execute arbitrary SQL commands via...
CVE-2005-1735Multiple cross-site scripting (XSS) vulnerabilities in PROMS before 0.11 allow remote attackers to inject arbitrary web ...
CVE-2005-1736PROMS 0.11 does not properly handle "certain combinations of rights," which gives more rights to users than intended.
CVE-2005-1737Multiple unknown vulnerabilities in PROMS 0.11 allow "non-authorized users" to (1) view or modify the project member lis...
CVE-2005-1697The RSS module in PostNuke 0.750 and 0.760RC2 and RC3 allows remote attackers to obtain sensitive information via a dire...
CVE-2005-1698PostNuke 0.750 and 0.760RC3 allows remote attackers to obtain sensitive information via a direct request to (1) theme.ph...
CVE-2005-1700SQL injection vulnerability in pnadmin.php in the Xanthia module in PostNuke 0.760-RC3 allows remote administrators to e...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now