2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-4800 | — | — | 2.2% | Dec 31, 2005 | Direct static code injection vulnerability in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allows remote auth... |
| CVE-2005-4854 | — | — | 1.1% | Dec 31, 2005 | eZ publish 3.5 through 3.7 before 20050830 does not use a folder's read permissions to restrict notifications, which all... |
| CVE-2005-4799 | — | — | 6.8% | Dec 31, 2005 | Multiple cross-site scripting (XSS) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow rem... |
| CVE-2005-4877 | — | — | 0.9% | Dec 31, 2005 | Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfi... |
| CVE-2005-4876 | — | — | 0.9% | Dec 31, 2005 | Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfi... |
| CVE-2005-4875 | — | — | 1.4% | Dec 31, 2005 | TYPO3 3.8.0 and earlier allows remote attackers to obtain sensitive information via a direct request to misc/phpcheck/, ... |
| CVE-2005-4744 | — | — | 4.4% | Dec 31, 2005 | Off-by-one error in the sql_error function in sql_unixodbc.c in FreeRADIUS 1.0.2.5-5, and possibly other versions includ... |
| CVE-2005-4873 | — | — | 1.9% | Dec 31, 2005 | Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23rc1 might allow context-dependent attacke... |
| CVE-2005-4872 | — | — | 2.3% | Dec 31, 2005 | Perl-Compatible Regular Expression (PCRE) library before 6.2 does not properly count the number of named capturing subpa... |
| CVE-2005-4871 | — | — | 1.1% | Dec 31, 2005 | Certain XML functions in IBM DB2 8.1 run with the privileges of DB2 instead of the logged-in user, which allows remote a... |
| CVE-2005-4870 | — | — | 2.7% | Dec 31, 2005 | Stack-based buffer overflows in the (1) xmlvarcharfromfile, (2) xmlclobfromfile, (3) xmlfilefromvarchar, and (4) xmlfile... |
| CVE-2005-4869 | — | — | 0.8% | Dec 31, 2005 | The (1) to_char and (2) to_date function in IBM DB2 8.1 allows local users to cause a denial of service (application cra... |
| CVE-2005-4867 | — | — | 5.1% | Dec 31, 2005 | Stack-based buffer overflow in the SATENCRYPT function in IBM DB2 8.1, when Satellite Administration (SATADMIN) is enabl... |
| CVE-2005-4866 | — | — | 1.6% | Dec 31, 2005 | Stack-based buffer overflow in JDBC Applet Server in IBM DB2 8.1 allows remote attackers to execute arbitrary by connect... |
| CVE-2005-4865 | — | — | 5.9% | Dec 31, 2005 | Stack-based buffer overflow in call in IBM DB2 7.x and 8.1 allows remote attackers to execute arbitrary code via a long ... |
| CVE-2005-4864 | — | — | 0.5% | Dec 31, 2005 | Stack-based buffer overflow in libdb2.so in IBM DB2 7.x and 8.1 allows local users to execute arbitrary code via a long ... |
| CVE-2005-4863 | — | — | 0.5% | Dec 31, 2005 | Stack-based buffer overflow in db2fmp in IBM DB2 7.x and 8.1 allows local users to execute arbitrary code via a long par... |
| CVE-2005-4862 | — | — | 1.1% | Dec 31, 2005 | The search functionality in XWiki 0.9.793 indexes cleartext user passwords, which allows remote attackers to obtain sens... |
| CVE-2005-4861 | — | — | 1.5% | Dec 31, 2005 | functions.php in Ragnarok Online Control Panel (ROCP) 4.3.4a allows remote attackers to bypass authentication by request... |
| CVE-2005-4859 | — | — | 1.4% | Dec 31, 2005 | mimicboard2 (Mimic2) 086 and earlier stores sensitive information under the web root with insufficient access control, w... |
| CVE-2005-4858 | — | — | 1.1% | Dec 31, 2005 | Multiple cross-site scripting (XSS) vulnerabilities in mimic2.cgi in mimicboard2 (Mimic2) 086 and earlier allow remote a... |
| CVE-2005-4857 | — | — | 0.9% | Dec 31, 2005 | eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051128 allows remote authenticated use... |
| CVE-2005-4856 | — | — | 1.1% | Dec 31, 2005 | The admin interface in eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051110 does not... |
| CVE-2005-4855 | — | — | 0.7% | Dec 31, 2005 | Unrestricted file upload vulnerability in eZ publish 3.5 before 3.5.5, 3.6 before 3.6.2, 3.7 before 3.7.0rc2, and 3.8 be... |
| CVE-2005-4849 | — | — | 2.5% | Dec 31, 2005 | Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter ... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now