2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

CVE IDSeverityCVSSDescription
CVE-2005-2654phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_b...
CVE-2005-1855Backup Manager (backup-manager) before 0.5.8 creates backup files with world-readable default permissions, which allows ...
CVE-2005-2719Ventrilo 2.1.2 through 2.3.0 allows remote attackers to cause a denial of service (application crash) via a status packe...
CVE-2005-2720Stack-based buffer overflow in the ACE archive decompression library (vrAZace.dll) in HAURI Anti-Virus products includin...
CVE-2005-2721Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) admin.php in Foojan PHP Weblog allow remote ...
CVE-2005-2722Foojan PHP Weblog allows remote attackers to obtain sensitive information via (1) a direct request to /daylinks/index.ph...
CVE-2005-2723SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies, allows remote attackers to e...
CVE-2005-2724Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HT...
CVE-2005-2725The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the...
CVE-2005-2726Directory traversal vulnerability in Home Ftp Server 1.0.7 allows remote authenticated users to read arbitrary files via...
CVE-2005-2727Home Ftp Server 1.0.7 stores sensitive user information and server information in the same directory as the user's home ...
CVE-2005-2728The byte-range filter in Apache 2.0 before 2.0.54 allows remote attackers to cause a denial of service (memory consumpti...
CVE-2005-2729The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows re...
CVE-2005-2730The HTTP proxy in Astaro Security Linux 6.0 allows remote attackers to obtain sensitive information via an invalid reque...
CVE-2005-2731Directory traversal vulnerability in Astaro Security Linux 6.0, when using Webmin, allows remote authenticated webmin us...
CVE-2005-2732AWStats 6.4, and possibly earlier versions, allows remote attackers to obtain sensitive information via a file that does...
CVE-2005-2733upload_img_cgi.php in Simple PHP Blog (SPHPBlog) does not properly restrict file extensions of uploaded files, which cou...
CVE-2005-2734Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary we...
CVE-2005-2735Cross-site scripting (XSS) vulnerability in phpGraphy 0.9.9a and earlier allows remote attackers to inject arbitrary web...
CVE-2005-2736Cross-site scripting (XSS) vulnerability in YaPig 0.95 and earlier allows remote attackers to inject arbitrary web scrip...
CVE-2005-2737Cross-site scripting (XSS) vulnerability in PhotoPost PHP Pro 5.1 allows remote attackers to inject arbitrary web script...
CVE-2005-2017Symantec AntiVirus 9 Corporate Edition allows local users to gain privileges via the "Scan for viruses" option, which la...
CVE-2005-1856The CD-burning feature in backup-manager 0.5.8 and earlier uses a fixed filename in a world-writable directory for loggi...
CVE-2005-2716The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers...
CVE-2005-2717PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP cod...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now