2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-4872——Perl-Compatible Regular Expression (PCRE) library before 6.2 does not properly count the number of named capturing subpa...
CVE-2005-4866——Stack-based buffer overflow in JDBC Applet Server in IBM DB2 8.1 allows remote attackers to execute arbitrary by connect...
CVE-2005-4839——PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trig...
CVE-2005-4838——Multiple cross-site scripting (XSS) vulnerabilities in the example web applications for Jakarta Tomcat 5.5.6 and earlier...
CVE-2005-1528——Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitra...
CVE-2005-4840——The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of s...
CVE-2005-4832——SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL...
CVE-2005-4865——Stack-based buffer overflow in call in IBM DB2 7.x and 8.1 allows remote attackers to execute arbitrary code via a long ...
CVE-2005-4842——The System Monitor Source Properties control allows remote attackers to cause a denial of service (Internet Explorer cra...
CVE-2005-4837——snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in maste...
CVE-2005-1726——The CoreGraphics Window Server in Mac OS X 10.4.1 allows local users with console access to gain privileges by "launchin...
CVE-2005-4841——The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creat...
CVE-2005-4836——The HTTP/1.1 connector in Apache Tomcat 4.1.15 through 4.1.40 does not reject NULL bytes in a URL when allowLinking is c...
CVE-2005-4781——Multiple SQL injection vulnerabilities in SergiDs Top Music module 3.0 PR3 and earlier for PHP-Nuke allow remote attacke...
CVE-2005-4779——verifiedexecioctl in verified_exec.c in NetBSD 2.0.2 calls NDINIT with UIO_USERSPACE rather than UID_SYSSPACE, which rem...
CVE-2005-4847——Unspecified vulnerability in Spey 0.3.3 has unknown impact and attack vectors related to "A number of security holes whi...
CVE-2005-4846——Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possib...
CVE-2005-4790——Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the w...
CVE-2005-4848——Buffer overflow in the decompression algorithm in Research in Motion BlackBerry Enterprise Server 4.0 SP1 and earlier be...
CVE-2005-4845——The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remot...
CVE-2005-4789——resmgr in SUSE Linux 9.2 and 9.3, and possibly other distributions, does not properly enforce class-specific exclude rul...
CVE-2005-4851——eZ publish 3.4.4 through 3.7 before 20050722 applies certain permissions on the node level, which allows remote authenti...
CVE-2005-4850——eZ publish 3.5 through 3.7 before 20050608 requires both edit and create permissions in order to submit data, which allo...
CVE-2005-4844——The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creati...
CVE-2005-4849——Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now