2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-3585SQL injection vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to execute arbitrary SQL commands...
CVE-2005-3586content.php in Mambo 4.5.2 through 4.5.2.3 allows remote attackers to obtain the installation path of the application vi...
CVE-2005-3587Improper boundary checks in petite.c in Clam AntiVirus (ClamAV) before 0.87.1 allows attackers to perform unknown attack...
CVE-2005-3588SQL injection vulnerability in admin.php in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL comm...
CVE-2005-3589Buffer overflow in FileZilla Server Terminal 0.9.4d may allow remote attackers to cause a denial of service (terminal cr...
CVE-2005-3591Macromedia Flash plugin (1) Flash.ocx 7.0.19.0 (Windows) and earlier and (2) libflashplayer.so before 7.0.25.0 (Unix) al...
CVE-2005-3592index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the applicat...
CVE-2005-3594game_score.php in e107 allows remote attackers to insert high scores via HTTP POST methods utilizing the $player_name, $...
CVE-2005-3595By default Microsoft Windows XP Home Edition installs with a blank password for the Administrator account, which allows ...
CVE-2005-3596SQL injection vulnerability in ASPKnowledgebase allows remote attackers to execute arbitrary SQL commands and bypass aut...
CVE-2005-3542Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3508. Reason: This candidate is a reservation ...
CVE-2005-3563Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2956. Reason: This candidate is a duplicate of...
CVE-2005-3562Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2955. Reason: This candidate is a reservation ...
CVE-2005-3527Race condition in do_coredump in signal.c in Linux kernel 2.6 allows local users to cause a denial of service by trigger...
CVE-2005-3523Format string vulnerability in friendsd2 in GpsDrive allows remote attackers to execute arbitrary code via the dir (dire...
CVE-2005-3524Buffer overflow in the SSL-ready version of linux-ftpd (linux-ftpd-ssl) 0.17 allows remote attackers to execute arbitrar...
CVE-2005-3519Multiple PHP file inclusion vulnerabilities in MySource 2.14.0 allow remote attackers to execute arbitrary PHP code and ...
CVE-2005-3521SQL injection vulnerability in resetcore.php in e107 0.617 through 0.6173 allows remote attackers to execute arbitrary S...
CVE-2005-3520Multiple cross-site scripting (XSS) vulnerabilities in MySource 2.14.0 allow remote attackers to inject arbitrary web sc...
CVE-2005-3522Cross-site scripting (XSS) vulnerability in index.jsp in ManageEngine Netflow Analyzer 4.0.2 allows remote attackers to ...
CVE-2005-3124syslogtocern in Acme thttpd before 2.23 allows local users to write arbitrary files via a symlink attack on a temporary ...
CVE-2005-3507Directory traversal vulnerability in CuteNews 1.4.1 allows remote attackers to include arbitrary files, execute code, an...
CVE-2005-3508SQL injection vulnerability in showGallery.php in Gallery (Galerie) 2.4 allows remote attackers to execute arbitrary SQL...
CVE-2005-3509Multiple SQL injection vulnerabilities in JPortal allow remote attackers to execute arbitrary SQL commands via (1) banne...
CVE-2005-3510Apache Tomcat 5.5.0 to 5.5.11 allows remote attackers to cause a denial of service (CPU consumption) via a large number ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now