2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-0412 | — | — | 1.5% | Apr 27, 2005 | Cross-site scripting (XSS) vulnerability in Spidean PostWrap allows remote attackers to inject arbitrary HTML and web sc... |
| CVE-2005-0159 | — | — | 0.4% | Apr 27, 2005 | The tpkg-* scripts in the toolchain-source 3.0.4 package on Debian GNU/Linux 3.0 allow local users to overwrite arbitrar... |
| CVE-2005-0423 | — | — | 1.2% | Apr 27, 2005 | SQL injection vulnerability in login.asp in ASPjar Guestbook allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2005-0085 | — | — | 2.3% | Apr 27, 2005 | Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrar... |
| CVE-2005-0413 | — | — | 2.1% | Apr 27, 2005 | Multiple SQL injection vulnerabilities in MyPHP Forum 1.0 allow remote attackers to execute arbitrary SQL commands via (... |
| CVE-2005-0414 | — | — | 1.2% | Apr 27, 2005 | SQL injection vulnerability in post.php for MercuryBoard 1.1.1 allows remote attackers to execute arbitrary SQL commands... |
| CVE-2005-0420 | — | — | 25.6% | Apr 27, 2005 | Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs... |
| CVE-2005-0424 | — | — | 1.4% | Apr 27, 2005 | Unknown vulnerability in the delete.asp program in certain versions of ASPjar Guestbook allows remote attackers to delet... |
| CVE-2005-1281 | — | — | 2.0% | Apr 26, 2005 | Ethereal 0.10.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP pac... |
| CVE-2005-1274 | — | — | 4.2% | Apr 26, 2005 | Stack-based buffer overflow in the getIfHeader function in the WebDAV functionality in MySQL MaxDB before 7.5.00.26 allo... |
| CVE-2005-1270 | — | — | 0.3% | Apr 26, 2005 | The (1) check_update.sh and (2) rkhunter script in Rootkit Hunter before 1.2.3-r1 create temporary files with predictabl... |
| CVE-2005-1296 | — | — | 1.8% | Apr 25, 2005 | include.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. |
| CVE-2005-0684 | — | — | 68.5% | Apr 25, 2005 | Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary ... |
| CVE-2005-1295 | — | — | 1.3% | Apr 25, 2005 | include.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. |
| CVE-2005-1317 | — | — | 2.0% | Apr 25, 2005 | Cross-site scripting (XSS) vulnerability in Horde Chora module before 1.2.3 allows remote attackers to inject arbitrary ... |
| CVE-2005-1300 | — | — | 1.2% | Apr 25, 2005 | Cross-site scripting (XSS) vulnerability in the inserter.cgi script allows remote attackers to inject arbitrary web scri... |
| CVE-2005-1299 | — | — | 2.8% | Apr 25, 2005 | The inserter.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. |
| CVE-2005-1298 | — | — | 1.4% | Apr 25, 2005 | The inserter.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. |
| CVE-2005-1297 | — | — | 1.2% | Apr 25, 2005 | Cross-site scripting (XSS) vulnerability in the include.cgi script allows remote attackers to inject arbitrary web scrip... |
| CVE-2005-1275 | — | — | 13.9% | Apr 25, 2005 | Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attacke... |
| CVE-2005-1303 | — | — | 1.3% | Apr 24, 2005 | The citat.pl script allows remote attackers to read arbitrary files via a full pathname in the argument. |
| CVE-2005-1312 | — | — | 2.6% | Apr 24, 2005 | PHP remote file inclusion vulnerability in Yappa-NG before 2.3.2 allows remote attackers to execute arbitrary PHP code v... |
| CVE-2005-1294 | — | — | 0.8% | Apr 24, 2005 | The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a... |
| CVE-2005-1246 | — | — | 7.4% | Apr 24, 2005 | Format string vulnerability in the snmppd_log function in snmppd_util.c for snmppd 0.4.5 and earlier may allow remote at... |
| CVE-2005-1310 | — | — | 1.3% | Apr 23, 2005 | SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid para... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now