2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2586——Mentor ADSL-FR4II router running firmware 2.00.0111 stores the web administration password in cleartext in the backup co...
CVE-2005-2587——SQL injection vulnerability in emailvalidate.php in PHPTB Topic Boards 2.0 allows remote attackers to execute arbitrary ...
CVE-2005-2572——MySQL, when running on Windows, allows remote authenticated users with insert privileges on the mysql.func table to caus...
CVE-2005-2573——The mysql_create_function function in sql_udf.cc for MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0.7-be...
CVE-2005-2574——xmb.php in XMB Forum 1.9.1 extracts and defines all provided variables, which allows remote attackers to modify arbitrar...
CVE-2005-2575——SQL injection vulnerability in u2u.inc.php in XMB Forum 1.9.1 allows remote attackers to execute arbitrary SQL commands ...
CVE-2005-2558——Stack-based buffer overflow in the init_syms function in MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0....
CVE-2005-2559——doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwri...
CVE-2005-2560——Cross-site scripting (XSS) vulnerability in index.cfm in CFBB 1.1.0 allows remote attackers to inject arbitrary web scri...
CVE-2005-2561——Multiple SQL injection vulnerabilities in MYFAQ 1.0 allow remote attackers to execute arbitrary SQL commands via the The...
CVE-2005-2568——Eval injection vulnerability in the template engine for SysCP 1.2.10 and earlier allows remote attackers to execute arbi...
CVE-2005-2576——CaLogic 1.22, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct reques...
CVE-2005-2577——Wyse Winterm 1125SE running firmware 4.2.09f or 4.4.061f allows remote attackers to cause a denial of service (device cr...
CVE-2005-2579——Nortel Contivity VPN Client V05_01.030, when configuring a certificate to be used as authentication, does not properly d...
CVE-2005-2580——Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to ...
CVE-2005-2581——Grandstream BudgeTone 101 and 102 running firmware 1.0.6.7 and possibly earlier versions, allows remote attackers to cau...
CVE-2005-2582——Kaspersky Anti-Virus for Unix/Linux File Servers 5.0-5 uses world-writable permissions for the (1) log and (2) license d...
CVE-2005-2562——SQL injection vulnerability in Gravity Board X (GBX) 1.1 allows remote attackers to execute arbitrary SQL commands and b...
CVE-2005-2097——xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of serv...
CVE-2005-2563——Multiple cross-site scripting (XSS) vulnerabilities in Gravity Board X (GBX) 1.1 allow remote attackers to inject arbitr...
CVE-2005-2102——The AIM/ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (application crash) via a f...
CVE-2005-1527——Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attack...
CVE-2005-2498——Eval injection vulnerability in PHPXMLRPC 1.1.1 and earlier (PEAR XML-RPC for PHP), as used in multiple products includi...
CVE-2005-2549——Multiple format string vulnerabilities in Evolution 1.5 through 2.3.6.1 allow remote attackers to cause a denial of serv...
CVE-2005-2554——The web server for Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) uses insecure permissions for the "Comm...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now