2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-2648 | — | — | 3.6% | Aug 23, 2005 | Directory traversal vulnerability in index.php in W-Agora 4.2.0 and earlier allows remote attackers to read arbitrary fi... |
| CVE-2005-2649 | — | — | 3.6% | Aug 23, 2005 | Cross-site scripting (XSS) vulnerability in ATutor 1.5.1 allows remote attackers to inject arbitrary web script or HTML ... |
| CVE-2005-2650 | — | — | 1.2% | Aug 23, 2005 | Cross-site scripting (XSS) vulnerability in sign.asp in Emefa Guestbook 1.2 allows remote attackers to inject arbitrary ... |
| CVE-2005-2651 | — | — | 5.1% | Aug 23, 2005 | gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv param... |
| CVE-2005-2652 | — | — | 1.6% | Aug 23, 2005 | Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php... |
| CVE-2005-2653 | — | — | 1.4% | Aug 23, 2005 | Cross-site scripting (XSS) vulnerability in BBCaffe 2.0 allows remote attackers to inject arbitrary web script or HTML v... |
| CVE-2005-2664 | — | — | 0.3% | Aug 23, 2005 | Whisper 32 1.16, and possibly earlier versions, stores passwords in plaintext in memory, which allows local users to obt... |
| CVE-2005-2665 | — | — | 15.3% | Aug 23, 2005 | Stack-based buffer overflow in expires.c in Elm 2.5 PL5 through PL7, and possibly other versions, allows remote attacker... |
| CVE-2005-2666 | — | — | 1.2% | Aug 23, 2005 | SSH, as implemented in OpenSSH before 4.0 and possibly other implementations, stores hostnames, IP addresses, and keys i... |
| CVE-2005-2667 | — | — | 3.1% | Aug 23, 2005 | Unknown vulnerability in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 ... |
| CVE-2005-2668 | — | — | 75.2% | Aug 23, 2005 | Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1... |
| CVE-2005-2669 | — | — | 7.3% | Aug 23, 2005 | Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows... |
| CVE-2005-2670 | — | — | 3.5% | Aug 23, 2005 | Directory traversal vulnerability in HAURI Anti-Virus products including ViRobot Expert 4.0, Advanced Server, Linux Serv... |
| CVE-2005-2672 | — | — | 0.4% | Aug 23, 2005 | pwmconfig in LM_sensors before 2.9.1 creates temporary files insecurely, which allows local users to overwrite arbitrary... |
| CVE-2005-2673 | — | — | 1.1% | Aug 23, 2005 | SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers ... |
| CVE-2005-2674 | — | — | 1.8% | Aug 23, 2005 | Note: the vendor has disputed this issue. Multiple cross-site scripting (XSS) vulnerabilities in Land Down Under (LDU) 8... |
| CVE-2005-2675 | — | — | 1.2% | Aug 23, 2005 | Note: the vendor has disputed this issue. Multiple SQL injection vulnerabilities in Land Down Under (LDU) 800 allow remo... |
| CVE-2005-2676 | — | — | 1.2% | Aug 23, 2005 | Cross-site scripting (XSS) vulnerability in displayimage.php in Coppermine Photo Gallery before 1.3.4 allows remote atta... |
| CVE-2005-2677 | — | — | 1.2% | Aug 23, 2005 | ACNews stores the database in a file under the web document root with a db.inc extension and insufficient access control... |
| CVE-2005-2679 | — | — | 3.5% | Aug 23, 2005 | Buffer overflow in Sysinternals Process Explorer 9.23, and other versions before 9.25, allows local users to execute arb... |
| CVE-2005-2678 | — | — | 41.8% | Aug 23, 2005 | Microsoft IIS 5.1 and 6 allows remote attackers to spoof the SERVER_NAME variable to bypass security checks and conduct ... |
| CVE-2005-2681 | — | — | 0.4% | Aug 23, 2005 | Unspecified vulnerability in the command line processing (CLI) logic in Cisco Intrusion Prevention System 5.0(1) and 5.0... |
| CVE-2005-2680 | — | — | 3.4% | Aug 23, 2005 | Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP4, when using entitlements, allows remote attackers to by... |
| CVE-2005-2682 | — | — | 2.1% | Aug 23, 2005 | aspell_setup.php in the SpellChecker plugin in DTLink AreaEdit before 0.4.3 allows remote attackers to execute arbitrary... |
| CVE-2005-2683 | — | — | 2.4% | Aug 23, 2005 | Multiple SQL injection vulnerabilities in PHPKit 1.6.1 allow remote attackers to execute arbitrary SQL commands via the ... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now