2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-0099The SDL port of abuse (abuse-SDL) before 2.00 does not properly drop privileges before creating certain files, which all...
CVE-2005-0747ApplyYourself i-Class allows remote attackers to obtain sensitive information about their own applications by reusing th...
CVE-2005-0741Cross-site scripting (XSS) vulnerability in YaBB.pl for YaBB 2.0 RC1 allows remote attackers to inject arbitrary web scr...
CVE-2005-0725SQL injection vulnerability in the getAllbyArticle function in wfsfiles.php for WF-Sections (wfsections) 1.07 allows rem...
CVE-2005-0723Cross-site scripting (XSS) vulnerability in the jumpmenu function in functions.php for paFileDB 3.1 and earlier allows r...
CVE-2005-0685Multiple access validation errors in OutStart Participate Enterprise (PE) allow remote attackers to (1) browse arbitrary...
CVE-2005-0626Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cook...
CVE-2005-0720PHP remote file inclusion vulnerability in admin/header.php in PHP mcNews 1.3 allows remote attackers to execute arbitra...
CVE-2005-0696Buffer overflow in ArGoSoft FTP Server 1.4.2.8 allows remote authenticated users to execute arbitrary code via a long DE...
CVE-2005-0098Multiple buffer overflows in the SDL port of abuse (abuse-SDL) before 2.00 allow local users to execute arbitrary code v...
CVE-2005-0722eXPerience2 allows remote attackers to obtain the full path for the web root via a direct request to modules.php without...
CVE-2005-0690Gene6 FTP Server does not properly restrict access to the control console, which allows local users to modify the server...
CVE-2005-0177nls_ascii.c in Linux before 2.6.8.1 uses an incorrect table size, which allows attackers to cause a denial of service (k...
CVE-2005-0178Race condition in the setsid function in Linux before 2.6.8.1 allows local users to cause a denial of service (crash) an...
CVE-2005-0180Multiple integer signedness errors in the sg_scsi_ioctl function in scsi_ioctl.c for Linux 2.6.x allow local users to re...
CVE-2005-0179Linux kernel 2.4.x and 2.6.x allows local users to cause a denial of service (CPU and memory consumption) and bypass RLI...
CVE-2005-0689includer.cgi in The Includer allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the U...
CVE-2005-0548Cross-site scripting (XSS) vulnerability in Solaris AnswerBook2 Documentation 1.4.4 and earlier allows remote attackers ...
CVE-2005-0703Xerox MicroServer Web Server for various WorkCentre products including M35/M45/M55 2.028.11.000 through 2.97.20.032 and ...
CVE-2005-0702SQL injection vulnerability in phpMyFAQ 1.4 and 1.5 allows remote attackers to add FAQ records to the database via the u...
CVE-2005-0701Directory traversal vulnerability in Oracle Database Server 8i and 9i allows remote attackers to read or rename arbitrar...
CVE-2005-0700The export_index action in myadmin.php for Aztek Forum 4.0 allows remote attackers to obtain database files, possibly by...
CVE-2005-0698PHP remote file inclusion vulnerability in PHPWebLog 0.5.3 and earlier allows remote attackers to execute arbitrary PHP ...
CVE-2005-0697SQL injection vulnerability in the process_picture function xp_publish.php in CopperExport 0.2.1 allows remote attackers...
CVE-2005-0667Buffer overflow in Sylpheed before 1.0.3 and other versions before 1.9.5 allows remote attackers to execute arbitrary co...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now