2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2993Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up to HP Tru64 UNIX 5.1...
CVE-2005-2979SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitra...
CVE-2005-2980Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers t...
CVE-2005-2981Cross-site scripting (XSS) vulnerability in Orion 1.3.8 and 1.4.5 allows remote attackers to inject arbitrary web script...
CVE-2005-2982Cross-site scripting (XSS) vulnerability in CompaqHTTPServer 2.1 allows remote attackers to inject arbitrary web script ...
CVE-2005-2983SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary S...
CVE-2005-2984Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restriction...
CVE-2005-2985SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers t...
CVE-2005-2986The v3flt2k.sys driver in AhnLab V3Pro 2004 Build 6.0.0.383, V3 VirusBlock 2005 Build 6.0.0.383, V3Net for Windows Serve...
CVE-2005-2987SQL injection vulnerability in login.php in Digital Scribe 1.4 allows remote attackers to execute arbitrary SQL commands...
CVE-2005-2989Multiple SQL injection vulnerabilities in DeluxeBB 1.0 and 1.0.5 allow remote attackers to execute arbitrary SQL command...
CVE-2005-2988HP LaserJet 2430, and possibly other printers that use Jetdirect controls, stores information about recently printed doc...
CVE-2005-2990AuthInfo.java in LineContol Java Client (jlc) before 0.8.1 stores sensitive information such as user passwords in log fi...
CVE-2005-2947Buffer overflow in KillProcess 2.20 and earlier allows user-assisted attackers to execute arbitrary code via an exe file...
CVE-2005-2952Directory traversal vulnerability in s.pl in Subscribe Me Pro 2.044.09P and earlier allows remote attackers to read arbi...
CVE-2005-2948KillProcess 2.20 and earlier allows local users to bypass kill list restrictions by launching multiple processes at the ...
CVE-2005-2949pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subre...
CVE-2005-2950Cross-site scripting (XSS) vulnerability in Sawmill 7.0.0 through 7.1.13 allows remote attackers to inject arbitrary web...
CVE-2005-2951Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows rem...
CVE-2005-2953Cross-site scripting (XSS) vulnerability in merchant.mvc in MIVA Merchant 5 allows remote attackers to inject arbitrary ...
CVE-2005-2954SQL injection vulnerability in password_reminder.php in ATutor before 1.5.1 pl1 allows remote attackers to execute arbit...
CVE-2005-2955config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file ...
CVE-2005-2956ATutor 1.5.1, and possibly earlier versions, stores temporary chat logs under the web document root with insufficient ac...
CVE-2005-2957Stack-based buffer overflow in AVIRA Desktop for Windows 1.00.00.68 with AVPACK32.DLL 6.31.0.3, when archive scanning is...
CVE-2005-2657Unknown vulnerability in common-lisp-controller 4.18 and earlier allows local users to gain privileges by compiling arbi...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now