2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-1425Uapplication Uguestbook 1.0 stores sensitive information under the web root with insufficient access control, which allo...
CVE-2005-1424StumbleInside GoText 1.01 stores sensitive username, mail address,and phone number information in plaintext in the GoTex...
CVE-2005-1423Directory traversal vulnerability in the mail program in 602LAN SUITE 2004.0.05.0413 allows remote attackers to cause a ...
CVE-2005-1422Raysoft/Raybase Video Cam Server 1.0.0 beta allows remote attackers to conduct administrator operations and cause a deni...
CVE-2005-1421Directory traversal vulnerability in Raysoft/Raybase Video Cam Server 1.0.0 beta allows remote attackers to read arbitra...
CVE-2005-1420Raysoft/Raybase Video Cam Server 1.0.0 beta allows remote attackers to determine the full pathname of the server via a r...
CVE-2005-1419SQL injection vulnerability in the admin login panel for Ocean12 Mailing List Manager 1.06 allows remote attackers to ex...
CVE-2005-1418NetLeaf Limited NotJustBrowsing 1.0.3 stores the View Lock Password in plaintext in the notjustbrowsing.prf file, which ...
CVE-2005-1417Multiple SQL injection vulnerabilities in MaxWebPortal 2.x, 1.35, and other versions allow remote attackers to execute a...
CVE-2005-1416Directory traversal vulnerability in 04WebServer 1.81 allows remote attackers to read files outside of the web root but ...
CVE-2005-1415Buffer overflow in GlobalSCAPE Secure FTP Server 3.0.2 allows remote authenticated users to execute arbitrary code via a...
CVE-2005-1414ExoticSoft FilePocket 1.2 stores sensitive proxy information, including proxy passwords, in plaintext in the registry, w...
CVE-2005-1413Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain p...
CVE-2005-1412SQL injection vulnerability in verify.asp for Ecomm Professional Guestbook 3.x allows remote attackers to execute arbitr...
CVE-2005-1411Cybration ICUII 7.0 stores passwords in plaintext in the world-readable icuii.ini file, which allows local users to gain...
CVE-2005-1410The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spe...
CVE-2005-1409PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unpri...
CVE-2005-1407Skype for Windows 1.2.0.0 to 1.2.0.46 allows local users to bypass the identity check for an authorized application, the...
CVE-2005-1405HTTP response splitting vulnerability in the @SetHTTPHeader function in Lotus Domino 6.5.x before 6.5.4 and 6.0.x before...
CVE-2005-1404MyPHP Forum 1.0 allows remote attackers to spoof the username by modifying the (1) nbuser parameter to post.php or (2) s...
CVE-2005-1403Multiple cross-site scripting (XSS) vulnerabilities in JustWilliam's Amazon Webstore 04050100 allow remote attackers to ...
CVE-2005-1402Integer signedness error in certain older versions of the NeL library, as used in Mtp-Target 1.2.2 and earlier, and poss...
CVE-2005-1401Format string vulnerability in the client for Mtp-Target 1.2.2 and earlier allows remote attackers to execute arbitrary ...
CVE-2005-1398phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by modifying the (1) price or (2)...
CVE-2005-1397SQL injection vulnerability in search.php for PHP-Calendar before 0.10.3 allows remote attackers to execute arbitrary SQ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now