2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-0632PHP remote file inclusion vulnerability in auth.php in PHPNews 1.2.4 and possibly 1.2.3, allows remote attackers to exec...
CVE-2005-0603viewtopic.php in phpBB 2.0.12 and earlier allows remote attackers to obtain sensitive information via a highlight parame...
CVE-2005-0608Heap-based buffer overflow in server.cpp for WebMod 0.47 allows remote attackers to cause a denial of service (crash) an...
CVE-2005-0625reportbug 3.2 includes settings from .reportbugrc in bug reports, which exposes sensitive information such as smtpuser a...
CVE-2005-0624reportbug before 2.62 creates the .reportbugrc configuration file with world-readable permissions, which allows local us...
CVE-2005-0619Einstein 1.0.1 stores sensitive information such as usernames and passwords in plaintext in the registry, which allows l...
CVE-2005-0616Multiple cross-site scripting (XSS) vulnerabilities in the Download module for PostNuke 0.750 and 0.760-RC2 allow remote...
CVE-2005-0613Unknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote attackers to upload arbitrary files.
CVE-2005-0580cmd5checkpw, when running setuid, does not properly drop privileges before calling the execvp function, which allows loc...
CVE-2005-0107bsmtpd 2.3 and earlier does not properly sanitize e-mail addresses, which allows remote attackers to execute arbitrary c...
CVE-2005-0579nxagent in FreeNX before 0.2.8 does not properly handle when the XAUTHORITY environment variable is not set, which allow...
CVE-2005-0598The RealServer RealSubscriber on Cisco devices running Application and Content Networking System (ACNS) 5.1 allow remote...
CVE-2005-0543Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web sc...
CVE-2005-0547Unknown vulnerability in ftpd on HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23 allows remote authenticated users...
CVE-2005-0600Cisco devices running Application and Content Networking System (ACNS) 5.0, 5.1 before 5.1.13.7, or 5.2 before 5.2.3.9 a...
CVE-2005-0516The ImageGalleryPlugin (ImageGalleryPlugin.pm) in Twiki allows remote attackers to execute arbitrary commands via certai...
CVE-2005-0518eXeem 0.21 stores sensitive information such as passwords in plaintext in the Exeem registry key, which allows local use...
CVE-2005-0517PeerFTP_5 stores sensitive information such as passwords in plaintext in the PeerFTP.ini files, which allows local users...
CVE-2005-0520ArGoSoft FTP Server before 1.4.2.8 allows remote attackers to read arbitrary files via shortcut (.LNK) files in the SITE...
CVE-2005-0521SendLink 1.5 stores sensitive information, possibly including passwords, in plaintext in the data.eat file, which allows...
CVE-2005-0937Some futex functions in futex.c for Linux kernel 2.6.x perform get_user calls while holding the mmap_sem semaphore, whic...
CVE-2005-0160Multiple buffer overflows in unace 1.2b allow attackers to execute arbitrary code via (1) 2 overflows in ACE archives, (...
CVE-2005-0161Multiple directory traversal vulnerabilities in unace 1.2b allow attackers to overwrite arbitrary files via an ACE archi...
CVE-2005-0514Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HT...
CVE-2005-0535Cross-site request forgery (CSRF) vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remo...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now