2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-0288The change password functionality in Bottomline Webseries Payment Application does not require the old password when use...
CVE-2005-0284SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allow...
CVE-2005-0287Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report tem...
CVE-2005-0182The mod_dosevasive module 1.9 and earlier for Apache creates temporary files with predictable filenames, which could all...
CVE-2005-0280Format string vulnerability in Soldner Secret Wars 30830 and earlier allows remote attackers to cause a denial of servic...
CVE-2005-0283Directory traversal vulnerability in index.php in QwikiWiki allows remote attackers to read arbitrary files via a .. (do...
CVE-2005-0274Multiple cross-site scripting (XSS) vulnerabilities in showgallery.php in PhotoPost before 4.86 allow remote attackers t...
CVE-2005-0271Multiple SQL injection vulnerabilities in ReviewPost PHP Pro before 2.84 allow remote attackers to execute arbitrary SQL...
CVE-2005-0268Direct code injection vulnerability in FlatNuke 2.5.1 allows remote attackers to execute arbitrary PHP code by placing t...
CVE-2005-0266Cross-site scripting (XSS) vulnerability in index.php in SugarCRM 1.X allows remote attackers to inject arbitrary web sc...
CVE-2005-0067The original design of TCP does not require that port numbers be assigned randomly (aka "Port randomization"), which mak...
CVE-2005-0066The original design of TCP does not check that the TCP Acknowledgement number in an ICMP error message generated by an i...
CVE-2005-0068The original design of ICMP does not require authentication for host-generated ICMP error messages, which makes it easie...
CVE-2005-0441Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote a...
CVE-2005-0373Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plug...
CVE-2005-0192Directory traversal vulnerability in the parsing of Skin file names in RealPlayer 10.5 (6.0.12.1040) and earlier allows ...
CVE-2005-0188Format string vulnerability in the SetBaseURL function in AtHoc toolbar allows remote attackers to execute arbitrary cod...
CVE-2005-0189Stack-based buffer overflow in the HandleAction function in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote atta...
CVE-2005-0190Directory traversal vulnerability in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to delete arbitra...
CVE-2005-1247webadmin.exe in Novell Nsure Audit 1.0.1 allows remote attackers to cause a denial of service via malformed ASN.1 packet...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now