2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2858The Fetch.FetchContact.1 ActiveX control (Fetch.dll) for Rediff Bol 7.0 allows remote attackers to read the Windows Addr...
CVE-2005-2859Savant Web Server stores user credentials in plaintext in the Savant\Users registry key, which allows local users to gai...
CVE-2005-2860Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web scrip...
CVE-2005-2861Cross-site scripting (XSS) vulnerability in N-Stealth Commercial Edition before 5.8.0.38 and Free Edition before 5.8.1.0...
CVE-2005-2020Directory traversal vulnerability in the web server for 3Com Network Supervisor 5.0.2 allows remote attackers to read ar...
CVE-2005-2841Buffer overflow in Firewall Authentication Proxy for FTP and/or Telnet Sessions for Cisco IOS 12.2ZH and 12.2ZL, 12.3 an...
CVE-2005-2840Multiple unknown vulnerabilities in MAXdev MD-Pro 1.0.72 and earlier have unknown impact and unspecified attack vectors,...
CVE-2005-2839Multiple cross-site scripting (XSS) vulnerabilities in MAXdev MD-Pro 1.0.72 allow remote attackers to inject arbitrary w...
CVE-2005-2836Multiple cross-site scripting (XSS) vulnerabilities in Phorum 5.0.17a and earlier allow remote attackers to inject arbit...
CVE-2005-2837Multiple eval injection vulnerabilities in PlainBlack Software WebGUI before 6.7.3 allow remote attackers to execute arb...
CVE-2005-2838SQL injection vulnerability in login.php in myBloggie 2.1.3-beta and earlier allows remote attackers to execute arbitrar...
CVE-2005-2816Cross-site scripting (XSS) vulnerability in Greymatter allows remote attackers to inject arbitrary web script or HTML vi...
CVE-2005-2817Simple Machines Forum (SMF) 1-0-5 and earlier supports the use of URLs for avatar images, which allows remote attackers ...
CVE-2005-2818Cross-site scripting (XSS) vulnerability in DownFile 1.3 allows remote attackers to inject arbitrary web script or HTML ...
CVE-2005-2819DownFile 1.3 allows remote attackers to gain administrator privileges via a direct request to (1) update.php, (2) del.ph...
CVE-2005-2820Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HT...
CVE-2005-2796The sslConnectTimeout function in ssl.c for Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of ...
CVE-2005-2794store.c in Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (crash) via certain abort...
CVE-2005-2807frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows...
CVE-2005-2815print.php in FlatNuke 2.5.6 allows remote attackers to obtain sensitive information (path disclosure on error) or cause ...
CVE-2005-2808frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restric...
CVE-2005-2809silc daemon (silcd.c) in Secure Internet Live Conferencing (SILC) 1.0 and earlier allows local users to overwrite arbitr...
CVE-2005-2810Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environ...
CVE-2005-2811Untrusted search path vulnerability in Net-SNMP 5.2.1.2 and earlier, on Gentoo Linux, installs certain Perl modules with...
CVE-2005-2812man2web allows remote attackers to execute arbitrary commands via -P arguments.

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now