2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-0019 | — | — | 0.4% | Apr 27, 2005 | Unknown vulnerability in hztty 2.0 and earlier allows local users to execute arbitrary commands. |
| CVE-2005-0229 | — | — | 7.7% | Apr 27, 2005 | CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers ... |
| CVE-2005-1281 | — | — | 2.0% | Apr 26, 2005 | Ethereal 0.10.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP pac... |
| CVE-2005-1270 | — | — | 0.3% | Apr 26, 2005 | The (1) check_update.sh and (2) rkhunter script in Rootkit Hunter before 1.2.3-r1 create temporary files with predictabl... |
| CVE-2005-1274 | — | — | 4.2% | Apr 26, 2005 | Stack-based buffer overflow in the getIfHeader function in the WebDAV functionality in MySQL MaxDB before 7.5.00.26 allo... |
| CVE-2005-1296 | — | — | 1.8% | Apr 25, 2005 | include.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. |
| CVE-2005-0684 | — | — | 68.5% | Apr 25, 2005 | Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary ... |
| CVE-2005-1275 | — | — | 13.9% | Apr 25, 2005 | Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attacke... |
| CVE-2005-1295 | — | — | 1.3% | Apr 25, 2005 | include.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. |
| CVE-2005-1297 | — | — | 1.2% | Apr 25, 2005 | Cross-site scripting (XSS) vulnerability in the include.cgi script allows remote attackers to inject arbitrary web scrip... |
| CVE-2005-1317 | — | — | 2.0% | Apr 25, 2005 | Cross-site scripting (XSS) vulnerability in Horde Chora module before 1.2.3 allows remote attackers to inject arbitrary ... |
| CVE-2005-1298 | — | — | 1.4% | Apr 25, 2005 | The inserter.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. |
| CVE-2005-1299 | — | — | 2.8% | Apr 25, 2005 | The inserter.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. |
| CVE-2005-1300 | — | — | 1.2% | Apr 25, 2005 | Cross-site scripting (XSS) vulnerability in the inserter.cgi script allows remote attackers to inject arbitrary web scri... |
| CVE-2005-1246 | — | — | 7.4% | Apr 24, 2005 | Format string vulnerability in the snmppd_log function in snmppd_util.c for snmppd 0.4.5 and earlier may allow remote at... |
| CVE-2005-1294 | — | — | 0.8% | Apr 24, 2005 | The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a... |
| CVE-2005-1303 | — | — | 1.3% | Apr 24, 2005 | The citat.pl script allows remote attackers to read arbitrary files via a full pathname in the argument. |
| CVE-2005-1312 | — | — | 2.6% | Apr 24, 2005 | PHP remote file inclusion vulnerability in Yappa-NG before 2.3.2 allows remote attackers to execute arbitrary PHP code v... |
| CVE-2005-1291 | — | — | 1.5% | Apr 23, 2005 | Multiple SQL injection vulnerabilities in CartWIZ ASP Cart allow remote attackers to execute arbitrary SQL commands via ... |
| CVE-2005-1287 | — | — | 2.2% | Apr 23, 2005 | Multiple SQL injection vulnerabilities in BK Forum 4.0 allow remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2005-1310 | — | — | 1.3% | Apr 23, 2005 | SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid para... |
| CVE-2005-1285 | — | — | 2.0% | Apr 22, 2005 | Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attacker... |
| CVE-2005-1283 | — | — | 1.7% | Apr 22, 2005 | Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1)... |
| CVE-2005-0754 | — | — | 3.0% | Apr 22, 2005 | Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attac... |
| CVE-2005-1233 | — | — | 2.2% | Apr 20, 2005 | Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary we... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now