2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2783Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.00.107 and earlier allows remote attackers to inject arbitrary ...
CVE-2005-2784SQL injection vulnerability in the login function for the administration login panel in cosmoshop 8.10.78 allows remote ...
CVE-2005-2793PHP remote file inclusion vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to execut...
CVE-2005-2786Directory traversal vulnerability in bestmail_edit.cgi in cosmoshop 8.10.78 and earlier allows remote administrators to ...
CVE-2005-2787comment_delete_cgi.php in Simple PHP Blog allows remote attackers to delete arbitrary files via the comment parameter.
CVE-2005-2788Multiple SQL injection vulnerabilities in Land Down Under (LDU) 801 and earlier allow remote attackers to execute arbitr...
CVE-2005-2789BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, allows remote attackers to byp...
CVE-2005-2790BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, relies on the client to enforc...
CVE-2005-2791BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, allows remote attackers to cau...
CVE-2005-2792Directory traversal vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to read arbitra...
CVE-2005-1857Format string vulnerability in simpleproxy before 3.4 allows remote malicious HTTP proxies to execute arbitrary code via...
CVE-2005-2496The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the...
CVE-2005-1915The log4sh_readProperties function in log4sh 1.2.5 and earlier allows local users to overwrite arbitrary files via a sym...
CVE-2005-2766Symantec AntiVirus Corporate Edition 9.0.1.x and 9.0.4.x, and possibly other versions, when obtaining updates from an in...
CVE-2005-0403init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling t...
CVE-2005-2765The user interface in the Windows Firewall does not properly display certain malformed entries in the Windows Registry, ...
CVE-2005-2761Cross-site scripting (XSS) vulnerability in phpGroupWare 0.9.16.000 allows administrators to inject arbitrary web script...
CVE-2005-2655lockmail in maildrop before 1.5.3 does not drop privileges before executing commands, which allows local users to gain p...
CVE-2005-2654phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_b...
CVE-2005-2017Symantec AntiVirus 9 Corporate Edition allows local users to gain privileges via the "Scan for viruses" option, which la...
CVE-2005-1855Backup Manager (backup-manager) before 0.5.8 creates backup files with world-readable default permissions, which allows ...
CVE-2005-2719Ventrilo 2.1.2 through 2.3.0 allows remote attackers to cause a denial of service (application crash) via a status packe...
CVE-2005-2721Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) admin.php in Foojan PHP Weblog allow remote ...
CVE-2005-2720Stack-based buffer overflow in the ACE archive decompression library (vrAZace.dll) in HAURI Anti-Virus products includin...
CVE-2005-2725The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now