2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-4874 | — | — | 1.2% | Dec 31, 2005 | The XMLHttpRequest object in Mozilla 1.7.8 supports the HTTP TRACE method, which allows remote attackers to obtain (1) p... |
| CVE-2005-1919 | — | — | — | Dec 31, 2005 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2005-4873 | — | — | 1.9% | Dec 31, 2005 | Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23rc1 might allow context-dependent attacke... |
| CVE-2005-0528 | — | — | — | Dec 31, 2005 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0985. Reason: This candidate is a duplicate of... |
| CVE-2005-4875 | — | — | 1.4% | Dec 31, 2005 | TYPO3 3.8.0 and earlier allows remote attackers to obtain sensitive information via a direct request to misc/phpcheck/, ... |
| CVE-2005-4872 | — | — | 2.3% | Dec 31, 2005 | Perl-Compatible Regular Expression (PCRE) library before 6.2 does not properly count the number of named capturing subpa... |
| CVE-2005-4839 | — | — | 0.6% | Dec 31, 2005 | PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trig... |
| CVE-2005-4876 | — | — | 0.9% | Dec 31, 2005 | Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfi... |
| CVE-2005-1528 | — | — | 0.8% | Dec 31, 2005 | Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitra... |
| CVE-2005-4871 | — | — | 1.1% | Dec 31, 2005 | Certain XML functions in IBM DB2 8.1 run with the privileges of DB2 instead of the logged-in user, which allows remote a... |
| CVE-2005-4838 | — | — | 7.9% | Dec 31, 2005 | Multiple cross-site scripting (XSS) vulnerabilities in the example web applications for Jakarta Tomcat 5.5.6 and earlier... |
| CVE-2005-4783 | — | — | 0.3% | Dec 31, 2005 | kernfs_xread in kernfs_vnops.c in NetBSD before 20050831 does not check for a negative offset when reading the message b... |
| CVE-2005-4843 | — | — | 11.3% | Dec 31, 2005 | The SmartConnect Class control allows remote attackers to cause a denial of service (Internet Explorer crash) by creatin... |
| CVE-2005-4842 | — | — | 9.3% | Dec 31, 2005 | The System Monitor Source Properties control allows remote attackers to cause a denial of service (Internet Explorer cra... |
| CVE-2005-4841 | — | — | 9.3% | Dec 31, 2005 | The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creat... |
| CVE-2005-1726 | — | — | 0.3% | Dec 31, 2005 | The CoreGraphics Window Server in Mac OS X 10.4.1 allows local users with console access to gain privileges by "launchin... |
| CVE-2005-4844 | — | — | 12.5% | Dec 31, 2005 | The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creati... |
| CVE-2005-4786 | — | — | 2.9% | Dec 31, 2005 | Buffer overflow in the archive decompression library (vrAZMain.dll 5.8.22.137), as used in HAURI anti-virus products inc... |
| CVE-2005-4870 | — | — | 2.7% | Dec 31, 2005 | Stack-based buffer overflows in the (1) xmlvarcharfromfile, (2) xmlclobfromfile, (3) xmlfilefromvarchar, and (4) xmlfile... |
| CVE-2005-4846 | — | — | 1.9% | Dec 31, 2005 | Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possib... |
| CVE-2005-4840 | — | — | 11.6% | Dec 31, 2005 | The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of s... |
| CVE-2005-4845 | — | — | 1.7% | Dec 31, 2005 | The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remot... |
| CVE-2005-4832 | — | — | 41.1% | Dec 31, 2005 | SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL... |
| CVE-2005-4785 | — | — | 1.4% | Dec 31, 2005 | Cross-site scripting (XSS) vulnerability in QuickBlogger 1.4 and earlier allows remote attackers to inject arbitrary web... |
| CVE-2005-4782 | — | — | 0.3% | Dec 31, 2005 | NetBSD 2.0 before 2.0.4, 2.1 before 2.1.1, and 3, when the kernel is compiled with "options DIAGNOSTIC," allows local us... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now