2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2783——Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.00.107 and earlier allows remote attackers to inject arbitrary ...
CVE-2005-2784——SQL injection vulnerability in the login function for the administration login panel in cosmoshop 8.10.78 allows remote ...
CVE-2005-2793——PHP remote file inclusion vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to execut...
CVE-2005-2786——Directory traversal vulnerability in bestmail_edit.cgi in cosmoshop 8.10.78 and earlier allows remote administrators to ...
CVE-2005-2787——comment_delete_cgi.php in Simple PHP Blog allows remote attackers to delete arbitrary files via the comment parameter.
CVE-2005-2788——Multiple SQL injection vulnerabilities in Land Down Under (LDU) 801 and earlier allow remote attackers to execute arbitr...
CVE-2005-2789——BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, allows remote attackers to byp...
CVE-2005-2790——BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, relies on the client to enforc...
CVE-2005-2791——BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, allows remote attackers to cau...
CVE-2005-2792——Directory traversal vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to read arbitra...
CVE-2005-1857——Format string vulnerability in simpleproxy before 3.4 allows remote malicious HTTP proxies to execute arbitrary code via...
CVE-2005-2496——The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the...
CVE-2005-1915——The log4sh_readProperties function in log4sh 1.2.5 and earlier allows local users to overwrite arbitrary files via a sym...
CVE-2005-2766——Symantec AntiVirus Corporate Edition 9.0.1.x and 9.0.4.x, and possibly other versions, when obtaining updates from an in...
CVE-2005-0403——init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling t...
CVE-2005-2765——The user interface in the Windows Firewall does not properly display certain malformed entries in the Windows Registry, ...
CVE-2005-2761——Cross-site scripting (XSS) vulnerability in phpGroupWare 0.9.16.000 allows administrators to inject arbitrary web script...
CVE-2005-2655——lockmail in maildrop before 1.5.3 does not drop privileges before executing commands, which allows local users to gain p...
CVE-2005-2654——phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_b...
CVE-2005-2017——Symantec AntiVirus 9 Corporate Edition allows local users to gain privileges via the "Scan for viruses" option, which la...
CVE-2005-1855——Backup Manager (backup-manager) before 0.5.8 creates backup files with world-readable default permissions, which allows ...
CVE-2005-2719——Ventrilo 2.1.2 through 2.3.0 allows remote attackers to cause a denial of service (application crash) via a status packe...
CVE-2005-2721——Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) admin.php in Foojan PHP Weblog allow remote ...
CVE-2005-2720——Stack-based buffer overflow in the ACE archive decompression library (vrAZace.dll) in HAURI Anti-Virus products includin...
CVE-2005-2725——The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now