2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-4874The XMLHttpRequest object in Mozilla 1.7.8 supports the HTTP TRACE method, which allows remote attackers to obtain (1) p...
CVE-2005-1919Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2005-4873Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23rc1 might allow context-dependent attacke...
CVE-2005-0528Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0985. Reason: This candidate is a duplicate of...
CVE-2005-4875TYPO3 3.8.0 and earlier allows remote attackers to obtain sensitive information via a direct request to misc/phpcheck/, ...
CVE-2005-4872Perl-Compatible Regular Expression (PCRE) library before 6.2 does not properly count the number of named capturing subpa...
CVE-2005-4839PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trig...
CVE-2005-4876Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfi...
CVE-2005-1528Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitra...
CVE-2005-4871Certain XML functions in IBM DB2 8.1 run with the privileges of DB2 instead of the logged-in user, which allows remote a...
CVE-2005-4838Multiple cross-site scripting (XSS) vulnerabilities in the example web applications for Jakarta Tomcat 5.5.6 and earlier...
CVE-2005-4783kernfs_xread in kernfs_vnops.c in NetBSD before 20050831 does not check for a negative offset when reading the message b...
CVE-2005-4843The SmartConnect Class control allows remote attackers to cause a denial of service (Internet Explorer crash) by creatin...
CVE-2005-4842The System Monitor Source Properties control allows remote attackers to cause a denial of service (Internet Explorer cra...
CVE-2005-4841The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creat...
CVE-2005-1726The CoreGraphics Window Server in Mac OS X 10.4.1 allows local users with console access to gain privileges by "launchin...
CVE-2005-4844The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creati...
CVE-2005-4786Buffer overflow in the archive decompression library (vrAZMain.dll 5.8.22.137), as used in HAURI anti-virus products inc...
CVE-2005-4870Stack-based buffer overflows in the (1) xmlvarcharfromfile, (2) xmlclobfromfile, (3) xmlfilefromvarchar, and (4) xmlfile...
CVE-2005-4846Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possib...
CVE-2005-4840The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of s...
CVE-2005-4845The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remot...
CVE-2005-4832SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL...
CVE-2005-4785Cross-site scripting (XSS) vulnerability in QuickBlogger 1.4 and earlier allows remote attackers to inject arbitrary web...
CVE-2005-4782NetBSD 2.0 before 2.0.4, 2.1 before 2.1.1, and 3, when the kernel is compiled with "options DIAGNOSTIC," allows local us...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now