2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-0524The php_handle_iff function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP func...
CVE-2005-0523Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format...
CVE-2005-0522Chat Anywhere 2.72a stores sensitive information such as passwords in plaintext in the .INI file for a chatroom, which a...
CVE-2005-0501Buffer overflow in Bontago 1.1 and earlier allows remote attackers to execute arbitrary code via a long nickname.
CVE-2005-0500Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to spoof the domain name of a URL in a titlebar for a sc...
CVE-2005-0498Gigafast router (aka CompUSA router) allows remote attackers to gain sensitive information and bypass the login page via...
CVE-2005-0497ADP Elite System Max 9000 allows remote authenticated users to gain privileges by uploading a .profile that sets the ADP...
CVE-2005-0493CRLF injection vulnerability in bizmail.cgi in Biz Mail Form before 2.2 allows remote attackers to bypass the email chec...
CVE-2005-0492Adobe Acrobat Reader 6.0.3 and 7.0.0 allows remote attackers to cause a denial of service (application crash) via a PDF ...
CVE-2005-0491Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a l...
CVE-2005-0469Buffer overflow in the slc_add_reply function in various BSD-based Telnet clients, when handling LINEMODE suboptions, al...
CVE-2005-0468Heap-based buffer overflow in the env_opt_add function in telnet.c for various BSD-based Telnet clients allows remote at...
CVE-2005-0465gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary fil...
CVE-2005-0464gr_osview in SGI IRIX 6.5.22, and possibly other 6.5 versions, does not drop privileges when opening description files w...
CVE-2005-0463Unknown "major security flaws" in Ulog-php before 1.0, related to input validation, have unknown impact and attack vecto...
CVE-2005-0461Unknown vulnerability in NewsBruiser 2.x before 2.6.1 allows remote attackers to "take actions on comments."
CVE-2005-0460index.php in MercuryBoard 1.0.x and 1.1.x allows remote attackers to obtain sensitive information by setting the debug p...
CVE-2005-0459phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root ...
CVE-2005-0458Cross-site scripting (XSS) vulnerability in contact_us.php in osCommerce 2.2-MS2 allows remote attackers to inject arbit...
CVE-2005-0457Opera 7.54 and earlier on Gentoo Linux uses an insecure path for plugins, which could allow local users to gain privileg...
CVE-2005-0455Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlaye...
CVE-2005-0454Multiple SQL injection vulnerabilities in DCP-Portal 6.1.1 and earlier allow remote attackers to execute arbitrary SQL c...
CVE-2005-0451Sami HTTP Server 1.0.5 allows remote attackers to cause a denial of service via an HTTP request containing two CRLF sequ...
CVE-2005-0450Directory traversal vulnerability in Sami HTTP Server 1.0.5 allows remote attackers to read arbitrary files via an HTTP ...
CVE-2005-0449The netfilter/iptables module in Linux before 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now