2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-4028Multiple cross-site scripting (XSS) vulnerabilities in aMember allow remote attackers to inject arbitrary web script or ...
CVE-2005-4029WebEOC before 6.0.2 allows remote attackers to obtain valid usernames via the HTML source of the WebEOC login webpage, w...
CVE-2005-4026search.php in Geeklog 1.4.x before 1.4.0rc1, and 1.3.x before 1.3.11sr3, allows remote attackers to obtain sensitive inf...
CVE-2005-4008SQL injection vulnerability in jax_calendar.php in Jax Calendar 1.34 allows remote attackers to execute arbitrary SQL co...
CVE-2005-4006SAPID CMS before 1.2.3.03 allows remote attackers to bypass authentication via direct requests to the usr/system files (...
CVE-2005-4007Multiple unspecified vulnerabilities in SAPID CMS before 1.2.3.03, related to newly registered users and possibly author...
CVE-2005-4005SQL injection vulnerability in messages.php in PHP-Fusion 6.00.109 allows remote attackers to obtain path information an...
CVE-2005-3993Multiple unspecified vulnerabilities in MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allow att...
CVE-2005-3995Format string vulnerability in the dosyslog function in the OBEX server (obexsrv.c) for Sobexsrv before 1.0.0-pre4, when...
CVE-2005-3996SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to ex...
CVE-2005-3997Zen Cart 1.2.6d and earlier, under certain PHP configurations, allows remote attackers to obtain sensitive information v...
CVE-2005-3998Cross-site scripting (XSS) vulnerability in search.asp in Solupress News 1.0 and earlier allows remote attackers to inje...
CVE-2005-3999Cross-site scripting (XSS) vulnerability in Search.asp in SiteBeater MP3 Catalog 2.03 and earlier allows remote attacker...
CVE-2005-4000Cross-site scripting (XSS) vulnerability in archive.asp in SiteBeater News System 4.00 and earlier allows remote attacke...
CVE-2005-4001Multiple SQL injection vulnerabilities in phpYellowTM Pro Edition and Lite Edition 5.33 allow remote attackers to execut...
CVE-2005-4002WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data ...
CVE-2005-4003Multiple SQL injection vulnerabilities in Absolute Shopping Package Solutions (ASPS) Shopping Cart Professional 2.9d and...
CVE-2005-4004Cross-site scripting (XSS) vulnerability in search.asp in MyTemplateSite 1.2 and earlier allows remote attackers to inje...
CVE-2005-3994Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3967. Reason: This candidate is a duplicate of...
CVE-2005-3991Multiple cross-site scripting (XSS) vulnerabilities in phpMyChat 0.14.6 allow remote attackers to inject arbitrary web s...
CVE-2005-3992Multiple buffer overflows in WinEggDropShell remote access trojan (RAT) 1.7 allow remote attackers to execute arbitrary ...
CVE-2005-3990Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-3619. Reason: This candidate is a duplicate of...
CVE-2005-3985The Internet Key Exchange version 1 (IKEv1) implementation in Astaro Security Linux before 6.102 allows remote attackers...
CVE-2005-3986Multiple SQL injection vulnerabilities in Instant Photo Gallery 1 and earlier allow remote attackers to execute arbitrar...
CVE-2005-3987Multiple SQL injection vulnerabilities in Tradesoft CMS allow remote attackers to execute arbitrary SQL commands via uns...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now