2005 CVE Vulnerabilities

4,770 CVEs published in 2005.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2005-10001MEDIUM6.1A vulnerability was found in Netegrity SiteMinder up to 4.5.1 and classified as critical. Affected by this issue is the ...
CVE-2005-2351MEDIUM5.5Mutt before 1.5.20 patch 7 allows an attacker to cause a denial of service via a series of requests to mutt temporary fi...
CVE-2005-2350MEDIUM6.1Cross-site scripting (XSS) vulnerability in websieve v0.62 allows remote attackers to inject arbitrary web script or HTM...
CVE-2005-4900MEDIUM5.9SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as ...
CVE-2005-4650MEDIUM5.3Joomla! 1.03 does not restrict the number of "Search" Mambots, which allows remote attackers to cause a denial of servic...
CVE-2005-4349MEDIUM6.3SQL injection vulnerability in server_privileges.php in phpMyAdmin 2.7.0 allows remote authenticated users to execute ar...
CVE-2005-4206MEDIUM6.1Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allow...
CVE-2005-3847MEDIUM5.5The handle_stop_signal function in signal.c in Linux kernel 2.6.11 up to other versions before 2.6.13 and 2.6.12.6 allow...
CVE-2005-3274MEDIUM4.7Race condition in ip_vs_conn_flush in Linux 2.6 before 2.6.13 and 2.4 before 2.4.32-pre2, when running on SMP systems, a...
CVE-2005-3170MEDIUM5The LDAP client on Microsoft Windows 2000 before Update Rollup 1 for SP4 accepts certificates using LDAP Secure Sockets ...
CVE-2005-3106MEDIUM4.7Race condition in Linux 2.6, when threads are sharing memory mapping via CLONE_VM (such as linuxthreads and vfork), migh...
CVE-2005-2456MEDIUM5.5Array index overflow in the xfrm_sk_policy_insert function in xfrm_user.c in Linux kernel 2.6 allows local users to caus...
CVE-2005-2293MEDIUM5.5Oracle Formsbuilder 9.0.4 stores database usernames and passwords in a temporary file, which is not deleted after it is ...
CVE-2005-2209MEDIUM5.5Capturix ScanShare 1.06 build 50 stores sensitive information such as the password in cleartext in capturixss_cfg.ini, w...
CVE-2005-1916MEDIUM5.5linki.py in ekg 2005-06-05 and earlier allows local users to overwrite or create arbitrary files via a symlink attack on...
CVE-2005-2059MEDIUM6.5Multiple cross-site request forgery (CSRF) vulnerabilities in (1) addaddress.php, (2) toggleignore.php, (3) removeignore...
CVE-2005-1947MEDIUM4.3Cross-site request forgery (CSRF) vulnerability in Invision Gallery before 1.3.1 allows remote attackers to delete album...
CVE-2005-1879MEDIUM5.5LutelWall 0.97 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file crea...
CVE-2005-1876MEDIUM4.5Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges...
CVE-2005-1880MEDIUM5.5everybuddy 0.4.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file cr...
CVE-2005-1688MEDIUM5.3Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) w...
CVE-2005-1674MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Help Center Live allows remote attackers to perform actions as the ad...
CVE-2005-1111MEDIUM4.7Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attac...
CVE-2005-0824MEDIUM5.5The internal_dump function in Mathopd before 1.5p5, and 1.6x before 1.6b6 BETA, when Mathopd is running with the -n opti...
CVE-2005-0369MEDIUM5.3Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 earlier allows remote attackers to cause a denial of serv...

Check if your code is affected by 2005 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now