2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-1681PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier versions, allows remote attac...
CVE-2005-1682JavaMail API, as used by Solstice Internet Mail Server POP3 2.0, does not properly validate the message number in the Mi...
CVE-2005-1684Cross-site scripting (XSS) vulnerability in default.asp for episodex guestbook allows remote attackers to inject arbitra...
CVE-2005-1683Buffer overflow in winword.exe 10.2627.6714 and earlier in Microsoft Word for the Macintosh, before SP3 for Word 2002, a...
CVE-2005-1687SQL injection vulnerability in wp-trackback.php in Wordpress 1.5 and earlier allows remote attackers to execute arbitrar...
CVE-2005-1685episodex guestbook allows remote attackers to bypass authentication and edit scripts via a direct request to admin.asp.
CVE-2005-1675Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 install...
CVE-2005-1934Gaim before 1.3.1 allows remote attackers to cause a denial of service (crash) via a malformed MSN message that leads to...
CVE-2005-1455Buffer overflow in the sql_escape_func function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote attacke...
CVE-2005-1673Multiple SQL injection vulnerabilities in Help Center Live allow remote attackers to execute arbitrary SQL commands via ...
CVE-2005-0392ppxp does not drop root privileges before opening log files, which allows local users to execute arbitrary commands.
CVE-2005-1672Multiple cross-site scripting (XSS) vulnerabilities in Help Center Live allow remote attackers to inject arbitrary web s...
CVE-2005-1671The Logfile feature in Yahoo! Messenger 5.x through 6.0 can be activated by a YMSGR: URL and writes all output to a sing...
CVE-2005-1670Unknown vulnerability in Extreme BlackDiamond 10808 and 8800 switches running ExtremeWare XOS 11.1 before 11.1.3.3, 11.0...
CVE-2005-1454SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote...
CVE-2005-1472Certain system calls in Apple Mac OS X 10.4.1 do not properly enforce the permissions of certain directories without the...
CVE-2005-0040Multiple cross-site scripting (XSS) vulnerabilities in DotNetNuke before 3.0.12 allow remote attackers to inject arbitra...
CVE-2005-1260bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes...
CVE-2005-1649The IPv6 support in Windows XP SP2, 2003 Server SP1, and Longhorn, with Windows Firewall turned off, allows remote attac...
CVE-2005-1668YusASP Web Asset Manager 1.0 allows remote attackers to gain privileges via a direct request to assetmanager.asp.
CVE-2005-1667DataTrac Activity Console 1.1 allows remote attackers to cause a denial of service via a long HTTP GET request.
CVE-2005-1666Multiple buffer overflows in Orenosv HTTP/FTP Server 0.8.1 allow remote authenticated users to cause a denial of service...
CVE-2005-1665The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote attackers to ca...
CVE-2005-1664The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ...
CVE-2005-1663Jeuce Personal Web Server 2.13 allows remote attackers to cause a denial of service (server crash) via a GET request beg...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now