2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-1070SQL injection vulnerability in index.php in Invision Power Board 1.3.1 Final and earlier allows remote attackers to exec...
CVE-2005-1055TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5...
CVE-2005-1064The copy_symlink function in rsnapshot 1.2.0 and 1.1.x before 1.1.7 changes the ownership of files that a symlink points...
CVE-2005-1082Multiple SQL injection vulnerabilities in AzDGDatingPlatinum 1.1.0 allows remote attackers to execute arbitrary SQL comm...
CVE-2005-1067Vulnerability in Access_user Class before 1.75 allows local users to gain access as other users via the password "new".
CVE-2005-1094FTP Now 2.6.14 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local use...
CVE-2005-1072Cross-site scripting (XSS) vulnerability in PunBB before 1.2.5 allows remote attackers to inject arbitrary web script or...
CVE-2005-1087CRLF injection vulnerability in the cmdIS.DLL plugin for AN HTTPD Server 1.42n allows remote attackers to spoof or hide ...
CVE-2005-0351Buffer overflow in (1) termsh, (2) atcronsh, and (3) auditsh in SCO OpenServer 5.0.6 and 5.0.7 might allow local users t...
CVE-2005-1047Meilad File upload script (up.php) mod for phpBB 2.0.x does not properly limit the types of files that can be uploaded, ...
CVE-2005-1032Rejected reason: cart.php in LiteCommerce might allow remote attackers to obtain sensitive information via invalid (1) c...
CVE-2005-1029Multiple SQL injection vulnerabilities in Active Auction House allow remote attackers to execute arbitrary SQL commands ...
CVE-2005-1096SQL injection vulnerability in main.asp for Ocean12 Membership Manager Pro 1.x allows remote attackers to execute arbitr...
CVE-2005-1035Multiple buffer overflows in Pavuk before 0.9.32 have unknown attack vectors and impact.
CVE-2005-0749The load_elf_library in the Linux kernel before 2.6.11.6 allows local users to cause a denial of service (kernel crash) ...
CVE-2005-0957Bay Technical Associates RPC-3 Telnet Host 3.05 allows remote attackers to bypass authentication by pressing the escape ...
CVE-2005-0479Directory traversal vulnerability in ComGetLogFile.php3 for TrackerCam 5.12 and earlier allows remote attackers to read ...
CVE-2005-0485Cross-site scripting (XSS) vulnerability in comment.php for paNews 2.0b4 for PHP Arena allows remote attackers to inject...
CVE-2005-0486Tarantella Secure Global Desktop Enterprise Edition 4.00 and 3.42, and Tarantella Enterprise 3 3.40 and 3.30, when using...
CVE-2005-0487Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows rem...
CVE-2005-0477Cross-site scripting (XSS) vulnerability in the SML code for Invision Power Board 1.3.1 FINAL allows remote attackers to...
CVE-2005-0474SQL injection vulnerability in the user_valid_crypt function in user.php in WebCalendar 0.9.45 allows remote attackers t...
CVE-2005-0482TrackerCam 5.12 and earlier allows remote attackers to cause a denial of service (crash) via (1) a large number of conne...
CVE-2005-0483Multiple directory traversal vulnerabilities in sitenfo.sh, sitezipchk.sh, and siteziplist.sh in Glftpd 1.26 to 2.00 all...
CVE-2005-0484Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to execute arbitrary code ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now