CVE Feed

    Dashboard / CVE

    4
    Medium

    CVE-2005-4740

    Last Modified: 16 Apr 2026

    IBM DB2 Universal Database (UDB) 810 before version 8 FixPak 10 allows remote authenticated users to cause a denial of service (db2jd service crash) by "connecting from a downlevel client."

    Published: 31 Dec 2005
    7.8
    High

    CVE-2005-4746

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in FreeRADIUS 1.0.3 and 1.0.4 allow remote attackers to cause denial of service (crash) via (1) the rlm_sqlcounter module or (2) unknown vectors "while expanding %t".

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4747

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in WebHost Automation Ltd Helm before 3.2.6 allows remote attackers to inject arbitrary web script or HTML via unknown vectors involving the default page.

    Published: 31 Dec 2005
    6.8
    Medium

    CVE-2005-4748

    Last Modified: 16 Apr 2026

    PHP remote file include vulnerability in functions_admin.php in Virtual War (VWar) 1.5.0 R10 allows remote attackers to include and execute arbitrary PHP code via unspecified attack vectors. NOTE: this issue has been referred to as XSS, but it is clear from the vendor description that it is a file inclusion problem.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4749

    Last Modified: 16 Apr 2026

    HTTP request smuggling vulnerability in BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier allows remote attackers to inject arbitrary HTTP headers via unspecified attack vectors.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4753

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP6 and earlier, in certain "heavy usage" scenarios, report incorrect severity levels for an audit event, which might allow attackers to perform unauthorized actions and avoid detection.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4754

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier allow remote attackers to obtain sensitive information (intranet IP addresses) via unknown attack vectors involving "network address translation."

    Published: 31 Dec 2005
    2.1
    Low

    CVE-2005-4755

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier (1) stores the private key passphrase (CustomTrustKeyStorePassPhrase) in cleartext in nodemanager.config; or, during domain creation with the Configuration Wizard, renders an SSL private key passphrase in cleartext (2) on a terminal or (3) in a log file, which might allow local users to obtain cryptographic keys.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4756

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP5 and earlier, do not properly validate derived Principals with multiple PrincipalValidators, which might allow attackers to gain privileges.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4757

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier, and 7.0 SP5 and earlier, do not properly "constrain" a "/" (slash) servlet root URL pattern, which might allow remote attackers to bypass intended servlet protections.

    Published: 31 Dec 2005
    1.2
    Low

    CVE-2005-4761

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP5 and earlier, and 6.1 SP7 and earlier log the Java command line at server startup, which might include sensitive information (passwords or keyphrases) in the server log file when the -D option is used.

    Published: 31 Dec 2005
    7.2
    High

    CVE-2005-4762

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier sometimes stores the boot password in the registry in cleartext, which might allow local users to gain administrative privileges.

    Published: 31 Dec 2005
    7.8
    High

    CVE-2005-4764

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 9.0, 8.1, and 7.0 lock out the admin user account after multiple incorrect password guesses, which allows remote attackers who know or guess the admin account name to cause a denial of service (blocked admin logins).

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4768

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in manage_account.php in Tux Racer TuxBank 0.7x and 0.8 allows remote attackers to execute arbitrary SQL commands via the id parameter in a manageaccount action to index.php.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4770

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in an unspecified Accelerated Enterprise Solutions product, possibly Accelerated E Solutions, allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 31 Dec 2005
    5.1
    Medium

    CVE-2005-4767

    Last Modified: 16 Apr 2026

    BEA WebLogic Server and WebLogic Express 8.1 SP5 and earlier, and 7.0 SP6 and earlier, when using username/password authentication, does not lock out a username after the maximum number of invalid login attempts, which makes it easier for remote attackers to guess the password.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4774

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Xerver 4.17 allows remote attackers to inject arbitrary web script or HTML after a /%00/ sequence at the end of the URI.

    Published: 31 Dec 2005
    7.2
    High

    CVE-2005-4776

    Last Modified: 16 Apr 2026

    Integer overflow in the FreeBSD compatibility code (freebsd_misc.c) in NetBSD-current, NetBSD-3, NetBSD-2.0, and NetBSD-2 before 20050913; and NetBSD-1.6 before 20050914; allows local users to cause a denial of service (heap corruption or system crash) and possibly gain root privileges.

    Published: 31 Dec 2005
    4.9
    Medium

    CVE-2005-4777

    Last Modified: 16 Apr 2026

    Tashcom ASPEdit 2.9 stores the administration password (aka the FTP password) in cleartext in the registry, which might allow local users to view the password.

    Published: 31 Dec 2005
    2.1
    Low

    CVE-2005-4778

    Last Modified: 16 Apr 2026

    The powersave daemon in SUSE Linux 10.0 before 20051007 has an unspecified "configuration problem," which allows local users to suspend the computer and possibly perform certain other unauthorized actions.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4781

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in SergiDs Top Music module 3.0 PR3 and earlier for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the (1) idartist, (2) idsong, and (3) idalbum parameters to modules.php.

    Published: 31 Dec 2005
    2.1
    Low

    CVE-2005-4789

    Last Modified: 16 Apr 2026

    resmgr in SUSE Linux 9.2 and 9.3, and possibly other distributions, does not properly enforce class-specific exclude rules in some situations, which allows local users to bypass intended access restrictions for USB devices that set their class ID at the interface level.

    Published: 31 Dec 2005
    6.9
    Medium

    CVE-2005-4790

    Last Modified: 16 Apr 2026

    Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam. NOTE: in August 2007, the tomboy vector was reported for other distributions.

    Published: 31 Dec 2005
    2.1
    Low

    CVE-2005-4791

    Last Modified: 16 Apr 2026

    Multiple untrusted search path vulnerabilities in SUSE Linux 10.0 cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) liferea or (2) banshee.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4792

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in Appalachian State University phpWebSite 0.10.1 and earlier allows remote attackers to execute arbitrary SQL commands via the module parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 31 Dec 2005
    3.6
    Low

    CVE-2005-4796

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the XView library (libxview.so) in Solaris 2.5 to 10 allows local users to corrupt files via unknown vectors related to the handling of the clipboard selection while an XView application exits.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4797

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in printd line printer daemon (lpd) in Solaris 7 through 10 allows remote attackers to delete arbitrary files via ".." sequences in an "Unlink data file" command.

    Published: 31 Dec 2005
    9
    Critical

    CVE-2005-4800

    Last Modified: 16 Apr 2026

    Direct static code injection vulnerability in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allows remote authenticated administrators to inject arbitrary PHP code via the TestGallery parameter in a mod_info action to modify_gallery.php, which inserts the code into guid_info.php. NOTE: this issue is easier to exploit due to a separate CSRF vulnerability.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4801

    Last Modified: 16 Apr 2026

    Multiple cross-site request forgery (CSRF) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow remote attackers to perform unauthorized actions as a logged-in user, as demonstrated by tricking the administrator to access a web page that performs a mod_info action in modify_gallery.php.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4805

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Sun Java System Application Server 7 Standard and Platform Edition 6 and earlier, and 2004Q2 Standard and Platform Edition Update 2 and earlier, allows remote attackers to obtain the source code for Java Server pages (JSP) via unknown vectors.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4806

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in Sun Java System Web Proxy Server 3.6 SP7 and earlier allow remote attackers to cause a denial of service (unresponsive service) via unknown vectors.

    Published: 31 Dec 2005
    7.6
    High

    CVE-2005-4808

    Last Modified: 16 Apr 2026

    Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4809

    Last Modified: 16 Apr 2026

    Mozilla Firefox 1.0.1 and possibly other versions, including Mozilla and Thunderbird, allows remote attackers to spoof the URL in the Status Bar via an A HREF tag that contains a TABLE tag that contains another A tag.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4804

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Sun Java System Application Server Platform Edition and Enterprise Edition 8.1 2005 Q1, and Platform Edition UR1, allows remote attackers to read .jar files via unknown vectors related to deployed web applications.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4814

    Last Modified: 16 Apr 2026

    Unrestricted file upload vulnerability in Segue CMS before 1.3.6, when the Apache HTTP Server handles .phtml files with the PHP interpreter, allows remote attackers to upload and execute arbitrary PHP code by placing .phtml files in the userfiles/ directory.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4817

    Last Modified: 16 Apr 2026

    Format string vulnerability in ui.c in Textbased MSN Client (TMSNC) before 0.2.5 allows attackers to cause a denial of service and possibly execute arbitrary code via unknown attack vectors that cause format strings to be injected into the wprintw function.

    Published: 31 Dec 2005
    7.8
    High

    CVE-2005-4812

    Last Modified: 16 Apr 2026

    The SISCO OSI stack for Windows, as used by MMS-EASE 7.10 and earlier, AX-S4 MMS 5.01 and earlier, AX-S4 ICCP 3.0103 and earlier, and the ICCP Toolkit for MMS-EASE 4.10 and earlier, allows remote attackers to cause a denial of service (process crash) via certain network traffic, as demonstrated using a Nessus scan.

    Published: 31 Dec 2005
    10
    Critical

    CVE-2005-4823

    Last Modified: 16 Apr 2026

    Buffer overflow in the HP HTTP Server 5.0 through 5.95 of the HP Web-enabled Management Software allows remote attackers to execute arbitrary code via unknown vectors.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4824

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in web/classes.php in Siteframe before 3.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the LOCAL_PATH parameter, a different vulnerability than CVE-2005-1965.

    Published: 31 Dec 2005
    7.6
    High

    CVE-2005-4830

    Last Modified: 16 Apr 2026

    CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the content-type parameter.

    Published: 31 Dec 2005
    10
    Critical

    CVE-2005-4829

    Last Modified: 16 Apr 2026

    VirtueMart before 1.0.1 does not properly handle errors when a user is forbidden to read a requested page, which has unknown impact and remote attack vectors.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4839

    Last Modified: 16 Apr 2026

    PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4840

    Last Modified: 16 Apr 2026

    The Outlook Express Address Book control, when using Internet Explorer 6, allows remote attackers to cause a denial of service (NULL dereference and browser crash) by creating the OutlookExpress.AddressBook COM object, which is not intended for use within Internet Explorer.

    Published: 31 Dec 2005
    7.1
    High

    CVE-2005-4841

    Last Modified: 16 Apr 2026

    The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.

    Published: 31 Dec 2005
    4.3
    Medium

    CVE-2005-4846

    Last Modified: 16 Apr 2026

    Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in a syslog call.

    Published: 31 Dec 2005
    10
    Critical

    CVE-2005-4847

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Spey 0.3.3 has unknown impact and attack vectors related to "A number of security holes which could lead to compromise," a different issue than CVE-2005-4846.

    Published: 31 Dec 2005
    7.5
    High

    CVE-2005-4848

    Last Modified: 16 Apr 2026

    Buffer overflow in the decompression algorithm in Research in Motion BlackBerry Enterprise Server 4.0 SP1 and earlier before 20050607 might allow remote attackers to execute arbitrary code via certain data packets.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4849

    Last Modified: 16 Apr 2026

    Apache Derby before 10.1.2.1 exposes the (1) user and (2) password attributes in cleartext via (a) the RDBNAM parameter of the ACCSEC command and (b) the output of the DatabaseMetaData.getURL function, which allows context-dependent attackers to obtain sensitive information.

    Published: 31 Dec 2005
    9.4
    Critical

    CVE-2005-4853

    Last Modified: 16 Apr 2026

    The default configuration of the forum package in eZ publish 3.5 before 3.5.5, 3.6 before 3.6.2, 3.7 before 3.7.0rc2, and 3.8 before 20050818 does not restrict edit permissions to a posting's owner, which allows remote authenticated users to edit arbitrary postings.

    Published: 31 Dec 2005
    5
    Medium

    CVE-2005-4854

    Last Modified: 16 Apr 2026

    eZ publish 3.5 through 3.7 before 20050830 does not use a folder's read permissions to restrict notifications, which allows remote authenticated users to obtain sensitive information about changes to content in arbitrary folders.

    Published: 31 Dec 2005