2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-4872Perl-Compatible Regular Expression (PCRE) library before 6.2 does not properly count the number of named capturing subpa...
CVE-2005-4866Stack-based buffer overflow in JDBC Applet Server in IBM DB2 8.1 allows remote attackers to execute arbitrary by connect...
CVE-2005-4839PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trig...
CVE-2005-4838Multiple cross-site scripting (XSS) vulnerabilities in the example web applications for Jakarta Tomcat 5.5.6 and earlier...
CVE-2005-1528Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitra...
CVE-2005-4840The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of s...
CVE-2005-4832SQL injection vulnerability in the Oracle Database Server 10g allows remote authenticated users to execute arbitrary SQL...
CVE-2005-4865Stack-based buffer overflow in call in IBM DB2 7.x and 8.1 allows remote attackers to execute arbitrary code via a long ...
CVE-2005-4842The System Monitor Source Properties control allows remote attackers to cause a denial of service (Internet Explorer cra...
CVE-2005-4837snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in maste...
CVE-2005-1726The CoreGraphics Window Server in Mac OS X 10.4.1 allows local users with console access to gain privileges by "launchin...
CVE-2005-4841The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creat...
CVE-2005-4836The HTTP/1.1 connector in Apache Tomcat 4.1.15 through 4.1.40 does not reject NULL bytes in a URL when allowLinking is c...
CVE-2005-4781Multiple SQL injection vulnerabilities in SergiDs Top Music module 3.0 PR3 and earlier for PHP-Nuke allow remote attacke...
CVE-2005-4779verifiedexecioctl in verified_exec.c in NetBSD 2.0.2 calls NDINIT with UIO_USERSPACE rather than UID_SYSSPACE, which rem...
CVE-2005-4847Unspecified vulnerability in Spey 0.3.3 has unknown impact and attack vectors related to "A number of security holes whi...
CVE-2005-4846Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possib...
CVE-2005-4790Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the w...
CVE-2005-4848Buffer overflow in the decompression algorithm in Research in Motion BlackBerry Enterprise Server 4.0 SP1 and earlier be...
CVE-2005-4845The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remot...
CVE-2005-4789resmgr in SUSE Linux 9.2 and 9.3, and possibly other distributions, does not properly enforce class-specific exclude rul...
CVE-2005-4851eZ publish 3.4.4 through 3.7 before 20050722 applies certain permissions on the node level, which allows remote authenti...
CVE-2005-4850eZ publish 3.5 through 3.7 before 20050608 requires both edit and create permissions in order to submit data, which allo...
CVE-2005-4844The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creati...
CVE-2005-4849Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter ...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now