2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-4698Cross-site scripting (XSS) vulnerability in TellMe 1.2 and earlier allows remote attackers to inject arbitrary web scrip...
CVE-2005-4697The Microsoft Wireless Zero Configuration system (WZCS) allows local users to access WEP keys and pair-wise Master Keys ...
CVE-2005-4696The Microsoft Wireless Zero Configuration system (WZCS) stores WEP keys and pair-wise Master Keys (PMK) of the WPA pre-s...
CVE-2005-4695Symantec Brightmail AntiSpam 6.0 build 1 and 2 allows remote attackers to cause a denial of service (bmserver component ...
CVE-2005-4694Unspecified vulnerability in the www_add method in Asset.pm in Plain Black WebGUI 6.3.0 and other versions before 6.7.6 ...
CVE-2005-4693Gaim-Encryption 2.38-1 on Debian Linux allows remote attackers to cause a denial of service (crash) via a crafted messag...
CVE-2005-4692Unspecified vulnerability in mroovca stats (mroovcastats) before 0.4.5b has unknown attack vectors and impact, related t...
CVE-2005-2315Buffer overflow in Domain Name Relay Daemon (DNRD) before 2.19.1 allows remote attackers to execute arbitrary code via a...
CVE-2005-4691imake in NetBSD before 2.0.3, NetBSD-current before 12 September 2005, certain versions of X.Org, and certain versions o...
CVE-2005-4690Six Apart Movable Type 3.16 allows local users with blog-creation privileges to create or overwrite arbitrary files of c...
CVE-2005-4689Six Apart Movable Type 3.16 stores account names and password hashes in a cookie, which allows remote attackers to login...
CVE-2005-4688PunBB 1.2.9 does not require password entry when changing the e-mail address in an account's profile, which might allow ...
CVE-2005-4687PunBB 1.2.9, used alone or with F-ART BLOG:CMS, may trust a client's IP address as specified in the X-Forwarded-For HTTP...
CVE-2005-4686PunBB 1.2.9, when used alone or with F-ART BLOG:CMS, includes config.php before calling the unregister_globals function,...
CVE-2005-4685Firefox and Mozilla can associate a cookie with multiple domains when the DNS resolver has a non-root domain in its sear...
CVE-2005-4684Konqueror can associate a cookie with multiple domains when the DNS resolver has a non-root domain in its search list, w...
CVE-2005-4683PADL MigrationTools 46, when a failure occurs, stores contents of /etc/shadow in a world-readable /tmp/nis.$$.ldif file,...
CVE-2005-4682Cross-site scripting (XSS) vulnerability in error.asp in AudienceView allows remote attackers to inject arbitrary web sc...
CVE-2005-4681Buffer overflow in mIRC 5.91, 6.03, 6.12, and 6.16 allows local users to execute arbitrary code via a long string that i...
CVE-2005-4680Sophos Anti-Virus before 4.02, 4.5.x before 4.5.9, 4.6.x before 4.6.9, and 5.x before 5.1.4 allow remote attackers to hi...
CVE-2005-4679Internet Explorer 6 for Windows XP Service Pack 2 allows remote attackers to spoof the URL in the status bar via the tit...
CVE-2005-4678Apple Safari 2.0.2 (aka 416.12) allows remote attackers to spoof the URL in the status bar via the title in an image in ...
CVE-2005-4677SQL injection vulnerability in additional_images.php (aka the Additional Images module) before 1.14 in osCommerce allows...
CVE-2005-4813Unspecified vulnerability in Report Application Server (Crystalras.exe) before 11.0.0.1370, as used in Business Objects ...
CVE-2005-4623upload.exe in eFileGo 3.01 allows remote attackers to cause a denial of service (CPU consumption) via an argument with a...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now