2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2725The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the...
CVE-2005-2722Foojan PHP Weblog allows remote attackers to obtain sensitive information via (1) a direct request to /daylinks/index.ph...
CVE-2005-2723SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies, allows remote attackers to e...
CVE-2005-2724Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HT...
CVE-2005-2733upload_img_cgi.php in Simple PHP Blog (SPHPBlog) does not properly restrict file extensions of uploaded files, which cou...
CVE-2005-2726Directory traversal vulnerability in Home Ftp Server 1.0.7 allows remote authenticated users to read arbitrary files via...
CVE-2005-2727Home Ftp Server 1.0.7 stores sensitive user information and server information in the same directory as the user's home ...
CVE-2005-2728The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumpti...
CVE-2005-2729The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows re...
CVE-2005-2730The HTTP proxy in Astaro Security Linux 6.0 allows remote attackers to obtain sensitive information via an invalid reque...
CVE-2005-2731Directory traversal vulnerability in Astaro Security Linux 6.0, when using Webmin, allows remote authenticated webmin us...
CVE-2005-2732AWStats 6.4, and possibly earlier versions, allows remote attackers to obtain sensitive information via a file that does...
CVE-2005-2737Cross-site scripting (XSS) vulnerability in PhotoPost PHP Pro 5.1 allows remote attackers to inject arbitrary web script...
CVE-2005-2734Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary we...
CVE-2005-2735Cross-site scripting (XSS) vulnerability in phpGraphy 0.9.9a and earlier allows remote attackers to inject arbitrary web...
CVE-2005-2736Cross-site scripting (XSS) vulnerability in YaPig 0.95 and earlier allows remote attackers to inject arbitrary web scrip...
CVE-2005-2716The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers...
CVE-2005-2717PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP cod...
CVE-2005-2718Buffer overflow in ad_pcm.c in MPlayer 1.0pre7 and earlier allows remote attackers to execute arbitrary code via crafted...
CVE-2005-2696IBM Lotus Notes does not properly restrict access to password hashes in the Notes Address Book (NAB), which allows remot...
CVE-2005-2695Unspecified vulnerability in the SSL certificate checking functionality in Cisco CiscoWorks Management Center for IDS Se...
CVE-2005-2693cvsbug in CVS 1.12.12 and earlier creates temporary files insecurely, which allows local users to overwrite arbitrary fi...
CVE-2005-2694Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via ...
CVE-2005-2697SQL injection vulnerability in search.php for MyBulletinBoard (MyBB) 1.00 Release Candidate 1 through 4 allows remote at...
CVE-2005-2698Cross-site scripting (XSS) vulnerability in browse.php in Nephp Publisher Enterprise 3.04 allows remote attackers to inj...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now