CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2005-4835

    Last Modified: 16 Apr 2026

    The ath_rate_sample function in the ath_rate/sample/sample.c sample code in MadWifi before 0.9.3 allows remote attackers to cause a denial of service (failed KASSERT and system crash) by moving a connected system to a location with low signal strength, and possibly other vectors related to a race condition between interface enabling and packet transmission.

    Published: 31 Dec 2005
    7.1
    High

    CVE-2005-4844

    Last Modified: 16 Apr 2026

    The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4850

    Last Modified: 16 Apr 2026

    eZ publish 3.5 through 3.7 before 20050608 requires both edit and create permissions in order to submit data, which allows remote attackers to edit data submitted by arbitrary anonymous users.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4852

    Last Modified: 16 Apr 2026

    The siteaccess URIMatching implementation in eZ publish 3.5 through 3.8 before 20050812 converts all non-alphanumeric characters in a URI to '_' (underscore), which allows remote attackers to bypass access restrictions by inserting certain characters in a URI, as demonstrated by a request for /admin:de, which matches a rule allowing only /admin_de to access /admin.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4858

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in mimic2.cgi in mimicboard2 (Mimic2) 086 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified parameters associated with the (1) name, (2) title, and (3) comment sections, as demonstrated by referencing a remote document through the SRC attribute of an IFRAME element.

    Published: 31 Dec 2005
    7.8
    High

    CVE-2005-4860

    Last Modified: 16 Apr 2026

    Spectrum Cash Receipting System before 6.504 uses weak cryptography (static substitution) in the PASSFILE password file, which makes it easier for local users to gain privileges by decrypting a password.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4861

    Last Modified: 16 Apr 2026

    functions.php in Ragnarok Online Control Panel (ROCP) 4.3.4a allows remote attackers to bypass authentication by requesting account_manage.php with a trailing "/login.php" PHP_SELF value, which is not properly handled by the CHECK_AUTH function.

    Published: 31 Dec 2005
    7.1
    High

    CVE-2005-4868

    Last Modified: 16 Apr 2026

    Shared memory sections and events in IBM DB2 8.1 have default permissions of read and write for the Everyone group, which allows local users to gain unauthorized access, gain sensitive information, such as cleartext passwords, and cause a denial of service.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4872

    Last Modified: 16 Apr 2026

    Perl-Compatible Regular Expression (PCRE) library before 6.2 does not properly count the number of named capturing subpatterns, which allows context-dependent attackers to cause a denial of service (crash) via a regular expression with a large number of named subpatterns, which triggers a buffer overflow. NOTE: this issue was originally subsumed by CVE-2006-7224, but that CVE has been REJECTED and split.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4875

    Last Modified: 16 Apr 2026

    TYPO3 3.8.0 and earlier allows remote attackers to obtain sensitive information via a direct request to misc/phpcheck/, which invokes the phpinfo function and prints values of unspecified environment variables.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4876

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfire) 2.2.2, and possibly other versions before 2.3.0 Beta 2, allows remote attackers to inject arbitrary web script or HTML via the username parameter, a different vulnerability than CVE-2005-4877.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4877

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfire) 2.3.0 Beta 2 allows remote attackers to inject arbitrary web script or HTML via Javascript events in the username parameter, a different vulnerability than CVE-2005-4876.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4602

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in inc/function_upload.php in MyBB before 1.0.1 allows remote attackers to execute arbitrary SQL commands via the file extension of an uploaded file attachment.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-0036

    Last Modified: 16 Apr 2026

    The DNS implementation in DeleGate 8.10.2 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.

    Published: 31 Dec 2005
    Unknown

    CVE-2005-0528

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0985. Reason: This candidate is a duplicate of CVE-2003-0985. Notes: All CVE users should reference CVE-2003-0985 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-0037

    Last Modified: 16 Apr 2026

    The DNS implementation of DNRD before 2.10 allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.

    Published: 31 Dec 2005
    4.9
    Medium

    CVE-2005-0489

    Last Modified: 16 Apr 2026

    The /proc handling (proc/base.c) Linux kernel 2.4 before 2.4.17 allows local users to cause a denial of service via unknown vectors that cause an invalid access of free memory.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-1754

    Last Modified: 16 Apr 2026

    JavaMail API 1.1.3 through 1.3, as used by Apache Tomcat 5.0.16, allows remote attackers to read arbitrary files via a full pathname in the argument to the Download parameter. NOTE: Sun and Apache dispute this issue. Sun states: "The report makes references to source code and files that do not exist in the mentioned products.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-1939

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Ipswitch WhatsUp Small Business 2004 allows remote attackers to read arbitrary files via ".." (dot dot) sequences in a request to the Report service (TCP 8022).

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-3659

    Last Modified: 16 Apr 2026

    nsrd.exe in EMC Legato NetWorker 7.1.x before 7.1.4 and 7.2.x before 7.2.1.Build.314, and other products such as Sun Solstice Backup (SBU) 6.0 and 6.1 and StorEdge Enterprise Backup Software (EBS) 7.1 through 7.2L, allows remote attackers to cause a denial of service (nsrd service crash) via a malformed RPC request to RPC program number 390109, which triggers a null dereference.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4725

    Last Modified: 16 Apr 2026

    Geeklog before 1.3.11sr3 allows remote attackers to bypass intended access restrictions and comment on an arbitrary story or topic by guessing the story ID.

    Published: 31 Dec 2005
    2.1
    Low

    CVE-2005-4536

    Last Modified: 16 Apr 2026

    Mail::Audit module in libmail-audit-perl 2.1-5, when logging is enabled without a default log file specified, uses predictable log filenames, which allows local users to overwrite arbitrary files via a symlink attack on the [PID]-audit.log temporary file.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4592

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in bogofilter and bogolexer 0.96.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via words that are longer than the input buffer used by flex.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4613

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified fields in the user edit profile.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4594

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in TUGZip 3.4.0.0 allows remote attackers to execute arbitrary code via a long filename in an ARJ archive.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4599

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in tiny_mce_gzip.php in TinyMCE Compressor PHP before 1.06 allows remote attackers to inject arbitrary web script or HTML via the index parameter.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4606

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in check_user.asp in multiple Web Wiz products including (1) Site News 3.06 and earlier, (2) Journal 1.0 and earlier, (3) Polls 3.06 and earlier, and (4) and Database Login 1.71 and earlier allows remote attackers to execute arbitrary SQL commands via the txtUserName parameter.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4614

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in digiSHOP 3.1.17 and earlier allow remote attackers to execute arbitrary SQL commands or obtain the full installation path via (1) the c parameter in cart.php and (2) unspecified search module parameters.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4622

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in eFileGo 3.01 allows remote attackers to execute arbitrary code, read arbitrary files, and upload arbitrary files via a ... (triple dot) in (1) the URL on port 608 and (2) the argument to upload.exe.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4638

    Last Modified: 16 Apr 2026

    index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to obtain the full path via (1) _a and (2) newsid parameters in the news module, (3) downloaditemid parameter in the downloads module, and (4) kbarticleid parameter in the knowledgebase module.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4694

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the www_add method in Asset.pm in Plain Black WebGUI 6.3.0 and other versions before 6.7.6 allows attackers to execute arbitrary code via unknown attack vectors.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4705

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7, when a Java client application creates an SSL connection to the server after it has already created an insecure connection, will use the insecure connection, which allows remote attackers to sniff the connection.

    Published: 31 Dec 2005
    2.1
    Low

    CVE-2005-4706

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the "privilege management" feature of Sun Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors that trigger a null dereference in the secpolicy_fs_common function.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4709

    Last Modified: 16 Apr 2026

    The popSubjectContext method in the SecurityAssociation class in JBoss Enterprise Java Beans (EJB) 3.0 RC3 maintains the threadPrincipal and threadCredential values from a previous client's authentication after termination of a client session, which allows remote attackers to gain the roles of an arbitrary previous client who had the same JBoss server thread.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4707

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PHP GEN before 1.3 allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4713

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the SQL logging facility in PAM-MySQL 0.6.x before 0.6.2 and 0.7.x before 0.7pre3 allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors, probably involving the pam_mysql_sql_log function when being used in vsftpd, which does not include the IP address argument to an sprintf call.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4714

    Last Modified: 16 Apr 2026

    Format string vulnerability in the vmps_log function in OpenVMPS (VLAN Management Policy Server) 1.3 allows remote attackers to execute arbitrary code via unknown vectors.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4716

    Last Modified: 16 Apr 2026

    Hitachi TP1/Server Base and TP1/NET/Library 2 on IBM AIX allow remote attackers to (1) cause a denial of service (OpenTP1 system outage) via invalid data to a port used by a system-server process, and (2) cause a denial of service (process failure) via invalid data to a port used by any of certain other processes.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4720

    Last Modified: 16 Apr 2026

    Mozilla Firefox 1.0.7 and earlier on Linux allows remote attackers to cause a denial of service (client crash) via an IFRAME element with a large value of the WIDTH attribute, which triggers a problem related to representation of floating-point numbers, leading to an infinite loop of widget resizes and a corresponding large number of function calls on the stack.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4722

    Last Modified: 16 Apr 2026

    _Request_Message.cfm in tmsPUBLISHER 3.3 allows remote attackers to obtain sensitive information via an invalid id argument to pagename.cfm, which reveals the installation path in an error message.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4723

    Last Modified: 16 Apr 2026

    D-Link DI-524 Wireless Router, DI-624 Wireless Router, and DI-784 allow remote attackers to cause a denial of service (device reboot) via a series of crafted fragmented UDP packets, possibly involving a missing fragment.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4724

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in post.php in PhpTagCool 1.0.3 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For field in an HTTP header.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4721

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.cfm in tmsPUBLISHER 3.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Published: 31 Dec 2005
    4.6
    Medium

    CVE-2005-4728

    Last Modified: 16 Apr 2026

    Untrusted search path vulnerability (RPATH) in amaya 9.2.1 on Debian GNU/Linux allows local users to gain privileges via a malicious Mesa library in the /home/anand directory.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4729

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in show.php in VBZooM Forum allows remote attackers to execute arbitrary SQL commands via the SubjectID parameter.

    Published: 31 Dec 2005
    10
    Critical

    CVE-2005-4730

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in PEAR Text_Password 1.0 has unknown impact and attack vectors, related to "problematic seeding" of the random number generator, possibly predictable seeds.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4732

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Tux Racer TuxBank 0.7x and 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) description parameters.

    Published: 31 Dec 2005
    4.9
    Medium

    CVE-2005-4733

    Last Modified: 16 Apr 2026

    NetBSD 2.0 before 20050316 and NetBSD-current before 20050112 allow local users to cause a denial of service (infinite loop and system hang) by calling the F_CLOSEM fcntl with a parameter value of 0.

    Published: 31 Dec 2005
    6.5
    Medium

    CVE-2005-4738

    Last Modified: 16 Apr 2026

    IBM DB2 Universal Database (UDB) 810 before ESE AIX 5765F4100 does not ensure that a user has execute privileges before permitting object creation based on routines, which allows remote authenticated users to gain privileges.

    Published: 31 Dec 2005
    6.8
    Medium

    CVE-2005-4739

    Last Modified: 16 Apr 2026

    IBM DB2 Universal Database (UDB) 820 before version 8 FixPak 10 (s050811) allows remote authenticated users to cause a denial of service (application crash) by using a table function for an instance of snapshot_tbreorg, which triggers a trap in sqlnr_EStoE_action.

    Published: 31 Dec 2005