2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-0448Race condition in the rmtree function in File::Path.pm in Perl before 5.8.4 allows local users to create arbitrary setui...
CVE-2005-0446Squid 2.5.STABLE8 and earlier allows remote attackers to cause a denial of service (crash) via certain DNS responses reg...
CVE-2005-0445Cross-site scripting (XSS) vulnerability in Open WebMail 2.x allows remote attackers to inject arbitrary HTML or web scr...
CVE-2005-0443index.php in CubeCart 2.0.4 allows remote attackers to (1) obtain the full path for the web server or (2) conduct cross-...
CVE-2005-0442Directory traversal vulnerability in index.php for CubeCart 2.0.4 allows remote attackers to read arbitrary files via th...
CVE-2005-0440ELOG before 2.5.7 allows remote attackers to bypass authentication and download a configuration file that contains a sen...
CVE-2005-0439Buffer overflow in the decode_post function in ELOG before 2.5.7 allows remote attackers to execute arbitrary code via a...
CVE-2005-0438awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to obtain sensitive information by setting the debug parameter...
CVE-2005-0437Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl...
CVE-2005-0436Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of ...
CVE-2005-0435awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to read server web logs by setting the loadplugin and pluginmo...
CVE-2005-0432BEA WebLogic Server 7.0 Service Pack 5 and earlier, and 8.1 Service Pack 3 and earlier, generates different login except...
CVE-2005-0431Barracuda Spam Firewall 3.1.10 and earlier does not restrict the domains that white-listed domains can send mail to, whi...
CVE-2005-0429Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, ...
CVE-2005-0428The DNSPacket::expand method in dnspacket.cc in PowerDNS before 2.9.17 allows remote attackers to cause a denial of serv...
CVE-2005-0427The ebuild of Webmin before 1.170-r3 on Gentoo Linux includes the encrypted root password in the miniserv.users file whe...
CVE-2005-0426Unknown vulnerability in Solaris 8 and 9 allows remote attackers to cause a denial of service (panic) via "Heavy UDP Usa...
CVE-2005-0425Unknown vulnerability in IBM Websphere Application Server 5.0, 5.1, and 6.0 when running on Windows, allows remote attac...
CVE-2005-0418Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06, on Mac OS X, allows untrusted applicat...
CVE-2005-0404KMail 1.7.1 in KDE 3.3.2 allows remote attackers to spoof email information, such as whether the email has been digitall...
CVE-2005-0402Firefox before 1.0.2 allows remote attackers to execute arbitrary code by tricking a user into saving a page as a Firefo...
CVE-2005-0401FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijac...
CVE-2005-0400The ext2_make_empty function call in the Linux kernel before 2.6.11.6 does not properly initialize memory when creating ...
CVE-2005-0399Heap-based buffer overflow in GIF2.cpp in Firefox before 1.0.2, Mozilla before to 1.7.6, and Thunderbird before 1.0.2, a...
CVE-2005-0397Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote atta...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now