2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2020Directory traversal vulnerability in the web server for 3Com Network Supervisor 5.0.2 allows remote attackers to read ar...
CVE-2005-2840Multiple unknown vulnerabilities in MAXdev MD-Pro 1.0.72 and earlier have unknown impact and unspecified attack vectors,...
CVE-2005-2839Multiple cross-site scripting (XSS) vulnerabilities in MAXdev MD-Pro 1.0.72 allow remote attackers to inject arbitrary w...
CVE-2005-2837Multiple eval injection vulnerabilities in PlainBlack Software WebGUI before 6.7.3 allow remote attackers to execute arb...
CVE-2005-2836Multiple cross-site scripting (XSS) vulnerabilities in Phorum 5.0.17a and earlier allow remote attackers to inject arbit...
CVE-2005-2838SQL injection vulnerability in login.php in myBloggie 2.1.3-beta and earlier allows remote attackers to execute arbitrar...
CVE-2005-2819DownFile 1.3 allows remote attackers to gain administrator privileges via a direct request to (1) update.php, (2) del.ph...
CVE-2005-2820Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HT...
CVE-2005-2816Cross-site scripting (XSS) vulnerability in Greymatter allows remote attackers to inject arbitrary web script or HTML vi...
CVE-2005-2817Simple Machines Forum (SMF) 1-0-5 and earlier supports the use of URLs for avatar images, which allows remote attackers ...
CVE-2005-2818Cross-site scripting (XSS) vulnerability in DownFile 1.3 allows remote attackers to inject arbitrary web script or HTML ...
CVE-2005-2794store.c in Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (crash) via certain abort...
CVE-2005-2796The sslConnectTimeout function in ssl.c for Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of ...
CVE-2005-2807frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows...
CVE-2005-2809silc daemon (silcd.c) in Secure Internet Live Conferencing (SILC) 1.0 and earlier allows local users to overwrite arbitr...
CVE-2005-2808frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restric...
CVE-2005-2812man2web allows remote attackers to execute arbitrary commands via -P arguments.
CVE-2005-2810Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environ...
CVE-2005-2811Untrusted search path vulnerability in Net-SNMP 5.2.1.2 and earlier, on Gentoo Linux, installs certain Perl modules with...
CVE-2005-2813Directory traversal vulnerability in FlatNuke 2.5.6 and possibly earlier allows remote attackers to read arbitrary files...
CVE-2005-2814Cross-site scripting (XSS) vulnerability in FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTM...
CVE-2005-2815print.php in FlatNuke 2.5.6 allows remote attackers to obtain sensitive information (path disclosure on error) or cause ...
CVE-2005-2656Polygen before 1.0.6 generates precompiled grammar objects with world-writable permissions, which allows local users to ...
CVE-2005-2494kcheckpass in KDE 3.2.0 up to 3.4.2 allows local users to gain root access via a symlink attack on lock files.
CVE-2005-2700ssl_engine_kernel.c in mod_ssl before 2.8.24, when using "SSLVerifyClient optional" in the global virtual host configura...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now