2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-1387——Cocktail 3.5.4 and possibly earlier in Mac OS X passes the administrative password on the command line to sudo in cleart...
CVE-2005-1388——Cross-site scripting (XSS) vulnerability in SURVIVOR before 0.9.6 allows remote attackers to inject arbitrary web script...
CVE-2005-1391——Buffer overflow in the add_port function in APSIS Pound 1.8.2 and earlier allows remote attackers to execute arbitrary c...
CVE-2005-1392——The SQL install script in phpMyAdmin 2.6.2 is created with world-readable permissions, which allows local users to obtai...
CVE-2005-1393——Multiple buffer overflows in ArcGIS for ESRI ArcInfo Workstation 9.0 allow local users to execute arbitrary code via lon...
CVE-2005-1394——Format string vulnerability in ArcGIS for ESRI ArcInfo Workstation 9.0 allows local users to gain privileges via format ...
CVE-2005-1395——Buffer overflow in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier may allow local users to gain privileges via a long (1) XA...
CVE-2005-1396——Race condition in Ce/Ceterm (aka ARPUS/Ce) 2.5.4 and earlier allows local users to write to arbitrary files via a symlin...
CVE-2005-1397——SQL injection vulnerability in search.php for PHP-Calendar before 0.10.3 allows remote attackers to execute arbitrary SQ...
CVE-2005-1398——phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by modifying the (1) price or (2)...
CVE-2005-1401——Format string vulnerability in the client for Mtp-Target 1.2.2 and earlier allows remote attackers to execute arbitrary ...
CVE-2005-1402——Integer signedness error in certain older versions of the NeL library, as used in Mtp-Target 1.2.2 and earlier, and poss...
CVE-2005-1403——Multiple cross-site scripting (XSS) vulnerabilities in JustWilliam's Amazon Webstore 04050100 allow remote attackers to ...
CVE-2005-1404——MyPHP Forum 1.0 allows remote attackers to spoof the username by modifying the (1) nbuser parameter to post.php or (2) s...
CVE-2005-1405——HTTP response splitting vulnerability in the @SetHTTPHeader function in Lotus Domino 6.5.x before 6.5.4 and 6.0.x before...
CVE-2005-1407——Skype for Windows 1.2.0.0 to 1.2.0.46 allows local users to bypass the identity check for an authorized application, the...
CVE-2005-1409——PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unpri...
CVE-2005-1410——The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spe...
CVE-2005-1411——Cybration ICUII 7.0 stores passwords in plaintext in the world-readable icuii.ini file, which allows local users to gain...
CVE-2005-1412——SQL injection vulnerability in verify.asp for Ecomm Professional Guestbook 3.x allows remote attackers to execute arbitr...
CVE-2005-1413——Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain p...
CVE-2005-1414——ExoticSoft FilePocket 1.2 stores sensitive proxy information, including proxy passwords, in plaintext in the registry, w...
CVE-2005-1415——Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a...
CVE-2005-1416——Directory traversal vulnerability in 04WebServer 1.81 allows remote attackers to read files outside of the web root but ...
CVE-2005-1417——Multiple SQL injection vulnerabilities in MaxWebPortal 2.x, 1.35, and other versions allow remote attackers to execute a...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now