2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-0287 | — | — | 1.4% | Jan 10, 2005 | Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report tem... |
| CVE-2005-0284 | — | — | 1.1% | Jan 10, 2005 | SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allow... |
| CVE-2005-0182 | — | — | 1.5% | Jan 6, 2005 | The mod_dosevasive module 1.9 and earlier for Apache creates temporary files with predictable filenames, which could all... |
| CVE-2005-0280 | — | — | 4.5% | Jan 4, 2005 | Format string vulnerability in Soldner Secret Wars 30830 and earlier allows remote attackers to cause a denial of servic... |
| CVE-2005-0283 | — | — | 3.1% | Jan 4, 2005 | Directory traversal vulnerability in index.php in QwikiWiki allows remote attackers to read arbitrary files via a .. (do... |
| CVE-2005-0268 | — | — | 1.5% | Jan 3, 2005 | Direct code injection vulnerability in FlatNuke 2.5.1 allows remote attackers to execute arbitrary PHP code by placing t... |
| CVE-2005-0271 | — | — | 1.2% | Jan 3, 2005 | Multiple SQL injection vulnerabilities in ReviewPost PHP Pro before 2.84 allow remote attackers to execute arbitrary SQL... |
| CVE-2005-0274 | — | — | 1.8% | Jan 3, 2005 | Multiple cross-site scripting (XSS) vulnerabilities in showgallery.php in PhotoPost before 4.86 allow remote attackers t... |
| CVE-2005-0266 | — | — | 1.2% | Jan 1, 2005 | Cross-site scripting (XSS) vulnerability in index.php in SugarCRM 1.X allows remote attackers to inject arbitrary web sc... |
| CVE-2005-0068 | — | — | 54.4% | Dec 22, 2004 | The original design of ICMP does not require authentication for host-generated ICMP error messages, which makes it easie... |
| CVE-2005-0441 | — | — | 8.5% | Dec 22, 2004 | Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote a... |
| CVE-2005-0066 | — | — | 10.7% | Dec 22, 2004 | The original design of TCP does not check that the TCP Acknowledgement number in an ICMP error message generated by an i... |
| CVE-2005-0067 | — | — | 13.5% | Dec 22, 2004 | The original design of TCP does not require that port numbers be assigned randomly (aka "Port randomization"), which mak... |
| CVE-2005-0373 | — | — | 3.9% | Oct 7, 2004 | Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plug... |
| CVE-2005-0188 | — | — | 2.7% | Oct 6, 2004 | Format string vulnerability in the SetBaseURL function in AtHoc toolbar allows remote attackers to execute arbitrary cod... |
| CVE-2005-0192 | — | — | 2.0% | Oct 6, 2004 | Directory traversal vulnerability in the parsing of Skin file names in RealPlayer 10.5 (6.0.12.1040) and earlier allows ... |
| CVE-2005-0189 | — | — | 6.4% | Oct 6, 2004 | Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote atta... |
| CVE-2005-0190 | — | — | 4.0% | Sep 29, 2004 | Directory traversal vulnerability in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to delete arbitra... |
| CVE-2005-1247 | — | — | 1.6% | Jan 15, 2004 | webadmin.exe in Novell Nsure Audit 1.0.1 allows remote attackers to cause a denial of service via malformed ASN.1 packet... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now