2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-3009Cross-site scripting (XSS) vulnerability in CuteNews allows remote attackers to inject arbitrary web script or HTML via ...
CVE-2005-3006The mail client in Opera before 8.50 opens attached files from the user's cache directory without warning the user, whic...
CVE-2005-3007Opera before 8.50 allows remote attackers to spoof the content type of files via a filename with a trailing "." (dot), w...
CVE-2005-3008Tofu 0.2 allows remote attackers to execute arbitrary Python code via crafted pickled objects, which Tofu unpickles and ...
CVE-2005-3012The MasterDataCD::createImage function in masterdatacd.cpp for SimpleCDR-X 1.3.3 creates the .temp temporary directory w...
CVE-2005-3010Direct static code injection vulnerability in the flood protection feature in inc/shows.inc.php in CuteNews 1.4.0 and ea...
CVE-2005-3011The sort_offline function for texindex in texinfo 4.8 and earlier allows local users to overwrite arbitrary files via a ...
CVE-2005-0139Unknown vulnerability in rpc.mountd in SGI IRIX 6.5.25, 6.5.26, and 6.5.27 does not sufficiently restrict access rights ...
CVE-2005-0138rpc.mountd in SGI IRIX 6.5.25, 6.5.26, and 6.5.27 does not correctly allow access to anonymous clients that connect from...
CVE-2005-2764Multiple buffer overflows in OpenTTD before 0.4.0.1 allow attackers to cause a denial of service (crash) and possibly ex...
CVE-2005-2662masqmail before 0.2.18 allows remote attackers to execute arbitrary commands via crafted e-mail addresses that are not p...
CVE-2005-2663masqmail before 0.2.18 allows local users to overwrite arbitrary files via a symlink attack on a log file.
CVE-2005-2919libclamav/fsg.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to cause a denial of service (infinite lo...
CVE-2005-3001Unspecified vulnerability in the "tl" driver in Solaris 10 allows local users to cause a denial of service (panic) via u...
CVE-2005-3002Multi-Computer Control System (MCCS) 1.0 allows remote attackers to cause a denial of service via a malformed UDP packet...
CVE-2005-2920Buffer overflow in libclamav/upx.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to execute arbitrary c...
CVE-2005-2968Firefox 1.0.6 and Mozilla 1.7.10 allows attackers to execute arbitrary commands via shell metacharacters in a URL that i...
CVE-2005-3000Multiple cross-site scripting (XSS) vulnerabilities in viewers/txt.php in PHP Advanced Transfer Manager 1.30 allow remot...
CVE-2005-2994Unspecified vulnerability in the web client for IBM Rational ClearQuest 2002.05.00 and 2002.05.20, and 2003.06.00 throug...
CVE-2005-2995bacula 1.36.3 and earlier allows local users to modify or read sensitive files via symlink attacks on (1) the temporary ...
CVE-2005-2996Multiple heap-based and stack-based buffer overflows in certain DCOM server components in VERITAS Storage Exec Storage E...
CVE-2005-2997Multiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbitr...
CVE-2005-2998PHP Advanced Transfer Manager 1.30 has a default password for the administrator user, which allows remote attackers to u...
CVE-2005-2999PHP Advanced Transfer Manager 1.30 allows remote attackers to obtain sensitive PHP configuration information via a direc...
CVE-2005-2991ncompress 4.2.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files usin...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now