CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2005-4039

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in arhiva.php in Web4Future Portal Solutions News Portal allows remote attackers to read arbitrary files via the dir parameter.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-4043

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in view.php in Hobosworld HobSR 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) arrange and (2) p parameters.

    Published: 6 Dec 2005
    5
    Medium

    CVE-2005-4033

    Last Modified: 16 Apr 2026

    Nodezilla 0.4.13-corno-fulgure does not properly protect the evl_data directory, which could allow them to be shared when they are not protected by PRIVATEDATADIR in nodezilla.ini, which allows remote attackers to obtain sensitive information.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-4037

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in functions.php in Web4Future Affiliate Manager PRO 4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter.

    Published: 6 Dec 2005
    4.3
    Medium

    CVE-2005-4041

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.cgi in MR CGI Guy Hot Links SQL 3.1.x and Hot Links Pro 3.1.x allows remote attackers to inject arbitrary web script or HTML via the query string.

    Published: 6 Dec 2005
    4.3
    Medium

    CVE-2005-4044

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.cgi in Amazon Search Directory 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly the search parameter.

    Published: 6 Dec 2005
    4.3
    Medium

    CVE-2005-4032

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.cgi in Easy Search System 1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-4034

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Web4Future eDating Professional 5 allow remote attackers to execute arbitrary SQL commands via the (1) s, (2) pg, and (3) sortb parameters to (a) index.php; (4) cid parameter to (b) gift.php and (c) fq.php; and (5) cat parameter to (d) articles.php.

    Published: 6 Dec 2005
    4.3
    Medium

    CVE-2005-4042

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Warm Links 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via a parameter to search.cgi.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-4040

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in FileLister 0.51 and earlier allows remote attackers to execute arbitrary SQL commands via the search parameters, possibly the searchwhat parameter to definesearch.jsp.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-3192

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the StreamPredictor function in Xpdf 3.01, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, and (4) pdftohtml, (5) KOffice KWord, (6) CUPS, and (7) libextractor allows remote attackers to execute arbitrary code via a PDF file with an out-of-range numComps (number of components) field.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-3628

    Last Modified: 16 Apr 2026

    Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via unknown attack vectors.

    Published: 6 Dec 2005
    5.1
    Medium

    CVE-2005-3191

    Last Modified: 16 Apr 2026

    Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF and (2) DCTStream::readBaselineSOF functions in the DCT stream parsing code (Stream.cc) in xpdf 3.01 and earlier, as used in products such as (a) Poppler, (b) teTeX, (c) KDE kpdf, (d) pdftohtml, (e) KOffice KWord, (f) CUPS, and (g) libextractor allow user-assisted attackers to cause a denial of service (heap corruption) and possibly execute arbitrary code via a crafted PDF file with an out-of-range number of components (numComps), which is used as an array index.

    Published: 6 Dec 2005
    5.1
    Medium

    CVE-2005-3193

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, (4) CUPS, and (5) libextractor allows user-assisted attackers to cause a denial of service (heap corruption) and possibly execute arbitrary code via a crafted PDF file with large size values that cause insufficient memory to be allocated.

    Published: 6 Dec 2005
    7.5
    High

    CVE-2005-4010

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in KBase Express 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id parameter to category.php and (2) search parameters to search.php.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4011

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in calendar.php in Codewalkers ltwCalendar (aka PHP Event Calendar) 4.2, 4.1.3, and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 5 Dec 2005
    4.3
    Medium

    CVE-2005-4012

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PHP Web Statistik 1.4 allows remote attackers to inject arbitrary web script or HTML via (1) the lastnumber parameter to stat.php and (2) the HTTP referer to pixel.php.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4013

    Last Modified: 16 Apr 2026

    PHP Web Statistik 1.4 stores the stat.cfg file under the web root with insufficient access control, which allows remote attackers to obtain sensitive information such as statistics and the log directory location, possibly including the logdb.dta file.

    Published: 5 Dec 2005
    7.8
    High

    CVE-2005-4014

    Last Modified: 16 Apr 2026

    stat.php in PHP Web Statistik 1.4 allows remote attackers to cause a denial of service (CPU consumption) via a large lastnumber value.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4009

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in PHP Lite Calendar Express 2.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cid and (2) catid parameters to (a) day.php, (b) week.php, (c) month.php, and (d) year.php.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4018

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in ls.php in Landshop Real Estate Commerce System 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) start, (2) search_order, (3) search_type, (4) search_area, and (5) keyword parameters.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4019

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in Relative Real Estate Systems 1.02 and earlier allows remote attackers to execute arbitrary SQL commands via the mls parameter.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4020

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in create.php in Widget Imprint 1.0.26 and earlier allows remote attackers to execute arbitrary SQL commands via the product_id parameter.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4021

    Last Modified: 16 Apr 2026

    The installer for Gallery 2.0 before 2.0.2 stores the install log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.

    Published: 5 Dec 2005
    4.3
    Medium

    CVE-2005-4022

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the "Add Image From Web" feature in Gallery 2.0 before 2.0.2 allows remote attackers to inject arbitrary web script or HTML via Javascript in an IMG tag.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4023

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the zipcart module in Gallery 2.0 before 2.0.2 allows remote attackers to read arbitrary files via unknown vectors.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4017

    Last Modified: 16 Apr 2026

    property.php in Widget Property 1.1.19 allows remote attackers to obtain the full server path via an invalid lang value, which leaks the path in the resulting error message.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4026

    Last Modified: 16 Apr 2026

    search.php in Geeklog 1.4.x before 1.4.0rc1, and 1.3.x before 1.3.11sr3, allows remote attackers to obtain sensitive information via invalid (1) datestart and (2) dateend parameters, which leaks the web server path in an error message.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4027

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in SimpleBBS 1.1 allows remote attackers to execute arbitrary SQL commands via unspecified search module parameters.

    Published: 5 Dec 2005
    4.3
    Medium

    CVE-2005-4028

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in aMember allow remote attackers to inject arbitrary web script or HTML via the (1) lamember_login parameter to sendpass.php and (2) login parameter to member.php.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4029

    Last Modified: 16 Apr 2026

    WebEOC before 6.0.2 allows remote attackers to obtain valid usernames via the HTML source of the WebEOC login webpage, which could be useful in other attacks such as locking out valid users via brute force methods.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4025

    Last Modified: 16 Apr 2026

    Help Desk Reloaded Free Help Desk does not remove or protect install.php once installation is complete, which allows remote attackers to gain privileges via a direct request to install.php, then navigating to accountsetup.php and creating a new user.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4008

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in jax_calendar.php in Jax Calendar 1.34 allows remote attackers to execute arbitrary SQL commands via the (1) cal_id parameter, and possibly the (2) Y and (3) m parameters.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4016

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Widget Property 1.1.19 allows remote attackers to execute arbitrary SQL commands via the (1) property_id, (2) zip_code, (3) property_type_id, (4) price, and (5) city_id parameters to property.php.

    Published: 5 Dec 2005
    4.3
    Medium

    CVE-2005-4024

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Interspire FastFind 2004 and 2005 allows remote attackers to inject arbitrary web script or HTML via the query parameter.

    Published: 5 Dec 2005
    5
    Medium

    CVE-2005-4015

    Last Modified: 16 Apr 2026

    PHP Web Statistik 1.4 does not rotate the log database or limit the size of the referer field, which allows remote attackers to fill the log files via a large number of requests, as demonstrated using pixel.php.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4005

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in messages.php in PHP-Fusion 6.00.109 allows remote attackers to obtain path information and possibly execute arbitrary SQL commands via the srch_text parameter in a Search and Sort option to messages.php.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4006

    Last Modified: 16 Apr 2026

    SAPID CMS before 1.2.3.03 allows remote attackers to bypass authentication via direct requests to the usr/system files (1) insert_file.php, (2) insert_image.php, (3) insert_link.php, (4) insert_qcfile.php, and (5) edit.php.

    Published: 5 Dec 2005
    10
    Critical

    CVE-2005-4007

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in SAPID CMS before 1.2.3.03, related to newly registered users and possibly authorization checks, have unknown impact and attack vectors involving (1) mvc/controller/user_request_analysis.inc.php and (2) usr/xml/ddc/authorization.xml.

    Published: 5 Dec 2005
    7.8
    High

    CVE-2005-3993

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allow attackers to cause a denial of service (crash) via invalid IMAP commands.

    Published: 5 Dec 2005
    5.1
    Medium

    CVE-2005-3995

    Last Modified: 16 Apr 2026

    Format string vulnerability in the dosyslog function in the OBEX server (obexsrv.c) for Sobexsrv before 1.0.0-pre4, when the syslog (-S) function is enabled, allows remote attackers to execute arbitrary code via format string specifiers in file name arguments to OBEX commands.

    Published: 5 Dec 2005
    5.1
    Medium

    CVE-2005-3996

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email parameter.

    Published: 5 Dec 2005
    2.6
    Low

    CVE-2005-3997

    Last Modified: 16 Apr 2026

    Zen Cart 1.2.6d and earlier, under certain PHP configurations, allows remote attackers to obtain sensitive information via direct requests to files in the admin/includes directory, including (1) graphs/banner_daily.php, (2) graphs/banner_infobox.php, (3) graphs/banner_yearly.php, (4) graphs/banner_monthly.php, (5) application_bottom.php, (6) attributes_preview.php, (7) modules/category_product_listing.php, (8) modules/copy_to_confirm.php, (9) modules/delete_product_confirm.php, and (10) modules/move_product_confirm.php, which leaks the web server path in the resulting error message.

    Published: 5 Dec 2005
    Unknown

    CVE-2005-3994

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3967. Reason: This candidate is a duplicate of CVE-2005-3967. Notes: All CVE users should reference CVE-2005-3967 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4001

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in phpYellowTM Pro Edition and Lite Edition 5.33 allow remote attackers to execute arbitrary SQL commands via the (1) haystack parameter to search_result.php or (2) ckey parameter to print_me.php.

    Published: 5 Dec 2005
    4
    Medium

    CVE-2005-4002

    Last Modified: 16 Apr 2026

    WebEOC before 6.0.2 uses the same secret key for all installations, which allows attackers with the key to decrypt data from any WebEOC installation.

    Published: 5 Dec 2005
    4.3
    Medium

    CVE-2005-4004

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.asp in MyTemplateSite 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Published: 5 Dec 2005
    7.5
    High

    CVE-2005-4003

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Absolute Shopping Package Solutions (ASPS) Shopping Cart Professional 2.9d and earlier, and Lite 2.1 and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) srch_product_name parameter to adv_search.asp and (2) b_search parameter to bsearch.asp. NOTE: the original disclosure was specifically only for an XSS issue, but the CVE description was for SQL injection. Since the original disclosure, SQL injection vectors have been reported. This CVE might be REJECTed or significantly altered pending additional information.

    Published: 5 Dec 2005
    5.4
    Medium

    CVE-2005-3357

    Last Modified: 16 Apr 2026

    mod_ssl in Apache 2.0 up to 2.0.55, when configured with an SSL vhost with access control and a custom error 400 error page, allows remote attackers to cause a denial of service (application crash) via a non-SSL request to an SSL port, which triggers a NULL pointer dereference.

    Published: 5 Dec 2005
    4.3
    Medium

    CVE-2005-3999

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Search.asp in SiteBeater MP3 Catalog 2.03 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

    Published: 5 Dec 2005