2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2725——The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the...
CVE-2005-2722——Foojan PHP Weblog allows remote attackers to obtain sensitive information via (1) a direct request to /daylinks/index.ph...
CVE-2005-2723——SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies, allows remote attackers to e...
CVE-2005-2724——Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HT...
CVE-2005-2733——upload_img_cgi.php in Simple PHP Blog (SPHPBlog) does not properly restrict file extensions of uploaded files, which cou...
CVE-2005-2726——Directory traversal vulnerability in Home Ftp Server 1.0.7 allows remote authenticated users to read arbitrary files via...
CVE-2005-2727——Home Ftp Server 1.0.7 stores sensitive user information and server information in the same directory as the user's home ...
CVE-2005-2728——The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumpti...
CVE-2005-2729——The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows re...
CVE-2005-2730——The HTTP proxy in Astaro Security Linux 6.0 allows remote attackers to obtain sensitive information via an invalid reque...
CVE-2005-2731——Directory traversal vulnerability in Astaro Security Linux 6.0, when using Webmin, allows remote authenticated webmin us...
CVE-2005-2732——AWStats 6.4, and possibly earlier versions, allows remote attackers to obtain sensitive information via a file that does...
CVE-2005-2737——Cross-site scripting (XSS) vulnerability in PhotoPost PHP Pro 5.1 allows remote attackers to inject arbitrary web script...
CVE-2005-2734——Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary we...
CVE-2005-2735——Cross-site scripting (XSS) vulnerability in phpGraphy 0.9.9a and earlier allows remote attackers to inject arbitrary web...
CVE-2005-2736——Cross-site scripting (XSS) vulnerability in YaPig 0.95 and earlier allows remote attackers to inject arbitrary web scrip...
CVE-2005-2716——The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers...
CVE-2005-2717——PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP cod...
CVE-2005-2718——Buffer overflow in ad_pcm.c in MPlayer 1.0pre7 and earlier allows remote attackers to execute arbitrary code via crafted...
CVE-2005-2696——IBM Lotus Notes does not properly restrict access to password hashes in the Notes Address Book (NAB), which allows remot...
CVE-2005-2695——Unspecified vulnerability in the SSL certificate checking functionality in Cisco CiscoWorks Management Center for IDS Se...
CVE-2005-2693——cvsbug in CVS 1.12.12 and earlier creates temporary files insecurely, which allows local users to overwrite arbitrary fi...
CVE-2005-2694——Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via ...
CVE-2005-2697——SQL injection vulnerability in search.php for MyBulletinBoard (MyBB) 1.00 Release Candidate 1 through 4 allows remote at...
CVE-2005-2698——Cross-site scripting (XSS) vulnerability in browse.php in Nephp Publisher Enterprise 3.04 allows remote attackers to inj...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now