2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-1291 | — | — | 1.5% | Apr 23, 2005 | Multiple SQL injection vulnerabilities in CartWIZ ASP Cart allow remote attackers to execute arbitrary SQL commands via ... |
| CVE-2005-1287 | — | — | 2.2% | Apr 23, 2005 | Multiple SQL injection vulnerabilities in BK Forum 4.0 allow remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2005-0754 | — | — | 3.0% | Apr 22, 2005 | Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attac... |
| CVE-2005-1283 | — | — | 1.7% | Apr 22, 2005 | Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1)... |
| CVE-2005-1285 | — | — | 2.0% | Apr 22, 2005 | Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attacker... |
| CVE-2005-1244 | — | — | 1.8% | Apr 20, 2005 | Directory traversal vulnerability in the third party tool from NetIQ, as used to secure the iSeries AS/400 FTP server, a... |
| CVE-2005-1227 | — | — | 1.5% | Apr 20, 2005 | Cross-site scripting (XSS) vulnerability in PHProjekt 4.2 and earlier allows remote attackers to inject arbitrary web sc... |
| CVE-2005-1240 | — | — | 1.9% | Apr 20, 2005 | Directory traversal vulnerability in the third party tool from Castlehill, as used to secure the iSeries AS/400 FTP serv... |
| CVE-2005-1233 | — | — | 2.2% | Apr 20, 2005 | Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary we... |
| CVE-2005-1241 | — | — | 1.8% | Apr 20, 2005 | Directory traversal vulnerability in the third party tool from Powertech, as used to secure the iSeries AS/400 FTP serve... |
| CVE-2005-0755 | — | — | 3.4% | Apr 19, 2005 | Heap-based buffer overflow in RealPlayer 10 and earlier, Helix Player before 10.0.4, and RealOne Player v1 and v2 allows... |
| CVE-2005-1107 | — | — | 0.3% | Apr 18, 2005 | McAfee Internet Security Suite 2005 uses insecure default ACLs for installed files, which allows local users to gain pri... |
| CVE-2005-0752 | — | — | 4.1% | Apr 18, 2005 | The Plugin Finder Service (PFS) in Firefox before 1.0.3 allows remote attackers to execute arbitrary code via a javascri... |
| CVE-2005-0753 | — | — | 4.7% | Apr 18, 2005 | Buffer overflow in CVS before 1.11.20 allows remote attackers to execute arbitrary code. |
| CVE-2005-1138 | — | — | 1.2% | Apr 18, 2005 | Unknown vulnerability in WebMail in Kerio MailServer before 6.0.9 allows remote attackers to cause a denial of service (... |
| CVE-2005-1140 | — | — | 1.0% | Apr 15, 2005 | Cross-site scripting (XSS) vulnerability in myBloggie 2.1.1 allows remote attackers to inject arbitrary web script or HT... |
| CVE-2005-1142 | — | — | 3.1% | Apr 15, 2005 | Heap-based buffer overflow in the readpgm function in pnm.c for GOCR 0.40, when it is not using netpbm, allows remote at... |
| CVE-2005-1126 | — | — | 0.4% | Apr 15, 2005 | The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer... |
| CVE-2005-1308 | — | — | 2.3% | Apr 15, 2005 | SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter fo... |
| CVE-2005-0124 | — | — | 0.6% | Apr 14, 2005 | The coda_pioctl function in the coda functionality (pioctl.c) for Linux kernel 2.6.9 and 2.4.x before 2.4.29 may allow l... |
| CVE-2005-1118 | — | — | 2.5% | Apr 14, 2005 | Cross-site scripting (XSS) vulnerability in IISWebAgentIF.dll in the RSA Authentication Agent for Web 5.2 allows remote ... |
| CVE-2005-1122 | — | — | 2.7% | Apr 14, 2005 | Format string vulnerability in cgi.c for Monkey daemon (monkeyd) before 0.9.1 allows remote attackers to cause a denial ... |
| CVE-2005-1136 | — | — | 1.5% | Apr 14, 2005 | Simple PHP Blog (sphpBlog) 0.4.0 stores the (1) password.txt and (2) config.txt files under the web document root, which... |
| CVE-2005-1139 | — | — | 1.8% | Apr 14, 2005 | Opera 8 Beta 3, when using first-generation vetted digital certificates, displays the Organizational information of an S... |
| CVE-2005-0081 | — | — | 1.5% | Apr 14, 2005 | MySQL MaxDB 7.5.0.0, and other versions before 7.5.0.21, allows remote attackers to cause a denial of service (crash) vi... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now