2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-1077Multiple cross-site scripting (XSS) vulnerabilities in XAMPP 1.4.x allow remote attackers to inject arbitrary web script...
CVE-2005-1145NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in calendar.pl in CalendarSc...
CVE-2005-1146NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in the login command in cale...
CVE-2005-1147calendar.pl in CalendarScript 3.20 allows remote attackers to obtain sensitive information via invalid (1) calendar or (...
CVE-2005-1089Unknown vulnerability in DC++ before 0.674 allows attackers to append data to arbitrary files.
CVE-2005-1070SQL injection vulnerability in index.php in Invision Power Board 1.3.1 Final and earlier allows remote attackers to exec...
CVE-2005-1055TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5...
CVE-2005-1064The copy_symlink function in rsnapshot 1.2.0 and 1.1.x before 1.1.7 changes the ownership of files that a symlink points...
CVE-2005-1082Multiple SQL injection vulnerabilities in AzDGDatingPlatinum 1.1.0 allows remote attackers to execute arbitrary SQL comm...
CVE-2005-1067Vulnerability in Access_user Class before 1.75 allows local users to gain access as other users via the password "new".
CVE-2005-1094FTP Now 2.6.14 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local use...
CVE-2005-1072Cross-site scripting (XSS) vulnerability in PunBB before 1.2.5 allows remote attackers to inject arbitrary web script or...
CVE-2005-1047Meilad File upload script (up.php) mod for phpBB 2.0.x does not properly limit the types of files that can be uploaded, ...
CVE-2005-0351Buffer overflow in (1) termsh, (2) atcronsh, and (3) auditsh in SCO OpenServer 5.0.6 and 5.0.7 might allow local users t...
CVE-2005-1087CRLF injection vulnerability in the cmdIS.DLL plugin for AN HTTPD Server 1.42n allows remote attackers to spoof or hide ...
CVE-2005-1032Rejected reason: cart.php in LiteCommerce might allow remote attackers to obtain sensitive information via invalid (1) c...
CVE-2005-1029Multiple SQL injection vulnerabilities in Active Auction House allow remote attackers to execute arbitrary SQL commands ...
CVE-2005-1096SQL injection vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to execute arbitr...
CVE-2005-1035Multiple buffer overflows in Pavuk before 0.9.32 have unknown attack vectors and impact.
CVE-2005-0749The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) ...
CVE-2005-0957Bay Technical Associates RPC-3 Telnet Host 3.05 allows remote attackers to bypass authentication by pressing the escape ...
CVE-2005-0474SQL injection vulnerability in the user_valid_crypt function in user.php in WebCalendar 0.9.45 allows remote attackers t...
CVE-2005-0477Cross-site scripting (XSS) vulnerability in the SML code for Invision Power Board 1.3.1 FINAL allows remote attackers to...
CVE-2005-0478Multiple buffer overflows in TrackerCam 5.12 and earlier allow remote attackers to cause a denial of service and possibl...
CVE-2005-0479Directory traversal vulnerability in ComGetLogFile.php3 for TrackerCam 5.12 and earlier allows remote attackers to read ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now