2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2005-2586Mentor ADSL-FR4II router running firmware 2.00.0111 stores the web administration password in cleartext in the backup co...
CVE-2005-2587SQL injection vulnerability in emailvalidate.php in PHPTB Topic Boards 2.0 allows remote attackers to execute arbitrary ...
CVE-2005-2572MySQL, when running on Windows, allows remote authenticated users with insert privileges on the mysql.func table to caus...
CVE-2005-2573The mysql_create_function function in sql_udf.cc for MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0.7-be...
CVE-2005-2574xmb.php in XMB Forum 1.9.1 extracts and defines all provided variables, which allows remote attackers to modify arbitrar...
CVE-2005-2575SQL injection vulnerability in u2u.inc.php in XMB Forum 1.9.1 allows remote attackers to execute arbitrary SQL commands ...
CVE-2005-2558Stack-based buffer overflow in the init_syms function in MySQL 4.0 before 4.0.25, 4.1 before 4.1.13, and 5.0 before 5.0....
CVE-2005-2559doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwri...
CVE-2005-2560Cross-site scripting (XSS) vulnerability in index.cfm in CFBB 1.1.0 allows remote attackers to inject arbitrary web scri...
CVE-2005-2561Multiple SQL injection vulnerabilities in MYFAQ 1.0 allow remote attackers to execute arbitrary SQL commands via the The...
CVE-2005-2568Eval injection vulnerability in the template engine for SysCP 1.2.10 and earlier allows remote attackers to execute arbi...
CVE-2005-2576CaLogic 1.22, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct reques...
CVE-2005-2577Wyse Winterm 1125SE running firmware 4.2.09f or 4.4.061f allows remote attackers to cause a denial of service (device cr...
CVE-2005-2579Nortel Contivity VPN Client V05_01.030, when configuring a certificate to be used as authentication, does not properly d...
CVE-2005-2580Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to ...
CVE-2005-2581Grandstream BudgeTone 101 and 102 running firmware 1.0.6.7 and possibly earlier versions, allows remote attackers to cau...
CVE-2005-2582Kaspersky Anti-Virus for Unix/Linux File Servers 5.0-5 uses world-writable permissions for the (1) log and (2) license d...
CVE-2005-2562SQL injection vulnerability in Gravity Board X (GBX) 1.1 allows remote attackers to execute arbitrary SQL commands and b...
CVE-2005-2097xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of serv...
CVE-2005-2563Multiple cross-site scripting (XSS) vulnerabilities in Gravity Board X (GBX) 1.1 allow remote attackers to inject arbitr...
CVE-2005-2102The AIM/ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (application crash) via a f...
CVE-2005-1527Eval injection vulnerability in awstats.pl in AWStats 6.4 and earlier, when a URLPlugin is enabled, allows remote attack...
CVE-2005-2498Eval injection vulnerability in PHPXMLRPC 1.1.1 and earlier (PEAR XML-RPC for PHP), as used in multiple products includi...
CVE-2005-2549Multiple format string vulnerabilities in Evolution 1.5 through 2.3.6.1 allow remote attackers to cause a denial of serv...
CVE-2005-2554The web server for Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) uses insecure permissions for the "Comm...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now