2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-1560The SSH module in Neteyes Nexusway allows remote attackers to execute arbitrary commands via shell metacharacters in arg...
CVE-2005-1559The web module in Neteyes Nexusway allows remote attackers to execute arbitrary commands via hex-encoded shell metachara...
CVE-2005-1558The web module in Neteyes Nexusway allows remote attackers to bypass authentication and gain administrator privileges by...
CVE-2005-1557Multiple cross-site scripting (XSS) vulnerabilities in WebApp Guestbook PRO 3.2.1 and earlier allow remote attackers to ...
CVE-2005-1511PwsPHP 1.2.2 allows remote attackers to bypass authentication and post arbitrary comments via the Pseudo cookie.
CVE-2005-1510PwsPHP 1.2.2 allows remote attackers to obtain sensitive information via a direct request to the admin directory, which ...
CVE-2005-1509SQL injection vulnerability in profil.php in PwsPHP 1.2.2 allows remote attackers to execute arbitrary SQL commands via ...
CVE-2005-1508Multiple cross-site scripting (XSS) vulnerabilities in PwsPHP 1.2.2 allow remote attackers to inject arbitrary web scrip...
CVE-2005-1507Buffer overflow in the Tomcat plugin in 4d WebSTAR 5.33 and 5.4 allows remote attackers to cause a denial of service and...
CVE-2005-1506SQL injection vulnerability in out.php in CJ Ultra (CJUltra) Plus 1.0.3 and 1.0.4 allows remote attackers to execute arb...
CVE-2005-1505The new account wizard in Mail.app 2.0 in Mac OS 10.4, when configuring an IMAP mail account and checking the credential...
CVE-2005-1503Multiple SQL injection vulnerabilities in MidiCart PHP Shopping Cart allow remote attackers to execute arbitrary SQL com...
CVE-2005-1502Cross-site scripting (XSS) vulnerability in MidiCart PHP Shopping Cart allows remote attackers to inject arbitrary web s...
CVE-2005-1501MidiCart PHP Shopping Cart allows remote attackers to obtain sensitive information via a direct request to (1) search_li...
CVE-2005-1500Multiple SQL injection vulnerabilities in myBloggie 2.1.1 allow remote attackers to execute arbitrary SQL commands via (...
CVE-2005-1499delcomment.php in myBloggie 2.1.1 allows remote attackers to delete arbitrary comments by modifying the comment_id param...
CVE-2005-1498Multiple cross-site scripting (XSS) vulnerabilities in myBloggie 2.1.1 allow remote attackers to inject arbitrary web sc...
CVE-2005-1497index.php in myBloggie 2.1.1 allows remote attackers to obtain sensitive information via an invalid post_id parameter, w...
CVE-2005-1496The DBMS_Scheduler in Oracle 10g allows remote attackers with CREATE JOB privileges to gain additional privileges by cha...
CVE-2005-1495Oracle Database 9i and 10g disables Fine Grained Audit (FGA) after the SYS user executes a SELECT statement on an FGA ob...
CVE-2005-1494Multiple cross-site scripting (XSS) vulnerabilities in admin.cgi in MegaBook 2.0 and 2.1 allow remote attackers to injec...
CVE-2005-1493Directory traversal vulnerability in SimpleCam 1.2 allows remote attackers to read arbitrary files via a ..\ (dot dot ba...
CVE-2005-1492Cross-site scripting (XSS) vulnerability in user.cgi in Gossamer Threads Links SQL 2.x and 3.0 allows remote attackers t...
CVE-2005-1491Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2 allows remote authenticated users to (1) move their home directory v...
CVE-2005-1490Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2, when the mailbox.dat file does not exist, allows remote authenticat...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now