2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-1291Multiple SQL injection vulnerabilities in CartWIZ ASP Cart allow remote attackers to execute arbitrary SQL commands via ...
CVE-2005-1287Multiple SQL injection vulnerabilities in BK Forum 4.0 allow remote attackers to execute arbitrary SQL commands via the ...
CVE-2005-0754Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attac...
CVE-2005-1283Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1)...
CVE-2005-1285Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attacker...
CVE-2005-1244Directory traversal vulnerability in the third party tool from NetIQ, as used to secure the iSeries AS/400 FTP server, a...
CVE-2005-1227Cross-site scripting (XSS) vulnerability in PHProjekt 4.2 and earlier allows remote attackers to inject arbitrary web sc...
CVE-2005-1240Directory traversal vulnerability in the third party tool from Castlehill, as used to secure the iSeries AS/400 FTP serv...
CVE-2005-1233Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary we...
CVE-2005-1241Directory traversal vulnerability in the third party tool from Powertech, as used to secure the iSeries AS/400 FTP serve...
CVE-2005-0755Heap-based buffer overflow in RealPlayer 10 and earlier, Helix Player before 10.0.4, and RealOne Player v1 and v2 allows...
CVE-2005-1107McAfee Internet Security Suite 2005 uses insecure default ACLs for installed files, which allows local users to gain pri...
CVE-2005-0752The Plugin Finder Service (PFS) in Firefox before 1.0.3 allows remote attackers to execute arbitrary code via a javascri...
CVE-2005-0753Buffer overflow in CVS before 1.11.20 allows remote attackers to execute arbitrary code.
CVE-2005-1138Unknown vulnerability in WebMail in Kerio MailServer before 6.0.9 allows remote attackers to cause a denial of service (...
CVE-2005-1140Cross-site scripting (XSS) vulnerability in myBloggie 2.1.1 allows remote attackers to inject arbitrary web script or HT...
CVE-2005-1142Heap-based buffer overflow in the readpgm function in pnm.c for GOCR 0.40, when it is not using netpbm, allows remote at...
CVE-2005-1126The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer...
CVE-2005-1308SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter fo...
CVE-2005-0124The coda_pioctl function in the coda functionality (pioctl.c) for Linux kernel 2.6.9 and 2.4.x before 2.4.29 may allow l...
CVE-2005-1118Cross-site scripting (XSS) vulnerability in IISWebAgentIF.dll in the RSA Authentication Agent for Web 5.2 allows remote ...
CVE-2005-1122Format string vulnerability in cgi.c for Monkey daemon (monkeyd) before 0.9.1 allows remote attackers to cause a denial ...
CVE-2005-1136Simple PHP Blog (sphpBlog) 0.4.0 stores the (1) password.txt and (2) config.txt files under the web document root, which...
CVE-2005-1139Opera 8 Beta 3, when using first-generation vetted digital certificates, displays the Organizational information of an S...
CVE-2005-0081MySQL MaxDB 7.5.0.0, and other versions before 7.5.0.21, allows remote attackers to cause a denial of service (crash) vi...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now