2005 CVE Vulnerabilities
4,770 CVEs published in 2005.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2005-10004 | HIGH | 8.8 | 1.8% | Aug 30, 2025 | Cacti versions prior to 0.8.6-d contain a remote command execution vulnerability in the graph_view.php script. An authen... |
| CVE-2005-4890 | HIGH | 7.8 | 0.6% | Nov 4, 2019 | There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via "su - user -c program". The u... |
| CVE-2005-2352 | HIGH | 8.1 | 0.8% | Nov 1, 2019 | I race condition in Temp files was found in gs-gpl before 8.56 addons scripts. |
| CVE-2005-2349 | HIGH | 7.5 | 1.8% | Oct 28, 2019 | Zoo 2.10 has Directory traversal |
| CVE-2005-4868 | HIGH | 7.1 | 0.8% | Dec 31, 2005 | Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, whic... |
| CVE-2005-4860 | HIGH | 7.8 | 0.2% | Dec 31, 2005 | Spectrum Cash Receipting System before 6.504 uses weak cryptography (static substitution) in the PASSFILE password file,... |
| CVE-2005-3803 | HIGH | 7.5 | 2.1% | Nov 24, 2005 | Cisco IP Phone (VoIP) 7920 1.0(8) contains certain hard-coded ("fixed") public and private SNMP community strings that c... |
| CVE-2005-3716 | HIGH | 7.5 | 1.6% | Nov 21, 2005 | The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public... |
| CVE-2005-3302 | HIGH | 7.3 | 3.9% | Oct 24, 2005 | Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hi... |
| CVE-2005-3140 | HIGH | 7.5 | 1.9% | Oct 5, 2005 | Procom NetFORCE 800 4.02 M10 Build 20 and possibly other versions sends the NIS password map (passwd.nis) as a file atta... |
| CVE-2005-2946 | HIGH | 7.5 | 0.8% | Sep 16, 2005 | The default configuration on OpenSSL before 0.9.8 uses MD5 for creating message digests instead of a more cryptographica... |
| CVE-2005-2801 | HIGH | 7.5 | 3.4% | Sep 6, 2005 | xattr.c in the ext2 and ext3 file system code for Linux kernel 2.6 does not properly compare the name_index fields when ... |
| CVE-2005-1920 | HIGH | 7.5 | 3.7% | Jul 26, 2005 | The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the ... |
| CVE-2005-2281 | HIGH | 7.5 | 0.8% | Jul 18, 2005 | WebEOC before 6.0.2 uses a weak encryption scheme for passwords, which makes it easier for attackers to crack passwords. |
| CVE-2005-2182 | HIGH | 7.5 | 1.2% | Jul 11, 2005 | Grandstream BudgeTone (BT) 100 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in ... |
| CVE-2005-2181 | HIGH | 7.5 | 1.2% | Jul 11, 2005 | Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY messag... |
| CVE-2005-2160 | HIGH | 7.5 | 2.0% | Jul 6, 2005 | IMail stores usernames and passwords in cleartext in a cookie, which allows remote attackers to obtain sensitive informa... |
| CVE-2005-0772 | HIGH | 7.5 | 35.7% | Jun 28, 2005 | VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attack... |
| CVE-2005-1306 | HIGH | 7.5 | 14.5% | Jun 15, 2005 | The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of... |
| CVE-2005-1891 | HIGH | 7.5 | 2.3% | Jun 9, 2005 | The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a de... |
| CVE-2005-1941 | HIGH | 7.8 | 0.3% | Jun 8, 2005 | SilverCity before 0.9.5-r1 installs (1) cgi-styler-form.py, (2) cgi-styler.py, and (3) source2html.py with read and writ... |
| CVE-2005-1794 | HIGH | 7.4 | 16.2% | Jun 1, 2005 | Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it ... |
| CVE-2005-1831 | HIGH | 8.4 | 0.4% | May 31, 2005 | Sudo 1.6.8p7 on SuSE Linux 9.3, and possibly other Linux distributions, allows local users to gain privileges by using s... |
| CVE-2005-1828 | HIGH | 7.5 | 1.2% | May 26, 2005 | D-Link DSL-504T stores usernames and passwords in cleartext in the router configuration file, which allows remote attack... |
| CVE-2005-1036 | HIGH | 7.8 | 0.4% | May 2, 2005 | FreeBSD 5.x to 5.4 on AMD64 does not properly initialize the IO permission bitmap used to allow user access to certain h... |
Check if your code is affected by 2005 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now