CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2005-2893

    Last Modified: 16 Apr 2026

    Direct static code injection vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via the username (u parameter), which is directly injected into a file that is later executed upon login.

    Published: 14 Sept 2005
    4.3
    Medium

    CVE-2005-2901

    Last Modified: 16 Apr 2026

    Multiple Cross-site scripting (XSS) vulnerabilities in CjWeb2Mail 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) message, or (3) ip parameter to thankyou.php or (4) emsg parameter to web2mail.php.

    Published: 14 Sept 2005
    7.5
    High

    CVE-2005-2914

    Last Modified: 16 Apr 2026

    ezconfig.asp in Linksys WRT54G router 3.01.03, 3.03.6, non-default configurations of 2.04.4, and possibly other versions, does not use an authentication initialization function, which allows remote attackers to obtain encrypted configuration information and, if the key is known, modify the configuration.

    Published: 14 Sept 2005
    2.1
    Low

    CVE-2005-1913

    Last Modified: 16 Apr 2026

    The Linux kernel 2.6 before 2.6.12.1 allows local users to cause a denial of service (kernel panic) via a non group-leader thread executing a different program than was pending in itimer, which causes the signal to be delivered to the old group-leader task, which does not exist.

    Published: 14 Sept 2005
    7.5
    High

    CVE-2005-2885

    Last Modified: 16 Apr 2026

    The Downloads page in MAXdev MD-Pro 1.0.73, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which could allow remote attackers to bypass file extension checks and execute arbitrary commands by uploading a file with a different extension, as demonstrated using .inc files.

    Published: 14 Sept 2005
    4.3
    Medium

    CVE-2005-2886

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in MAXdev MD-Pro 1.0.73, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via (1) the print parameter to the print module, the sitename parameter to (2) bb_smilies or (3) bbcode_ref module, or (4) the hlpfile parameter to openwindow.php.

    Published: 14 Sept 2005
    4.3
    Medium

    CVE-2005-2894

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the user registration in PBLang 4.65, and possibly earlier versions, allows remote attackers to inject arbitrary web script or PHP via the location field.

    Published: 14 Sept 2005
    4.6
    Medium

    CVE-2005-2898

    Last Modified: 16 Apr 2026

    NOTE: this issue has been disputed by the vendor. FileZilla 2.2.14b and 2.2.15, and possibly earlier versions, when "Use secure mode" is disabled, uses a weak encryption scheme to store the user's password in the configuration settings file, which allows local users to obtain sensitive information. NOTE: the vendor has disputed the issue, stating that "the problem is not a vulnerability at all, but in fact a fundamental issue of every single program that can store passwords transparently.

    Published: 14 Sept 2005
    7.5
    High

    CVE-2005-2902

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in class-1 Forum Software 0.24.4 allows remote attackers to execute arbitrary SQL commands and bypass the file extension check via SQL code in the file extension of an uploaded file.

    Published: 14 Sept 2005
    Unknown

    CVE-2005-2913

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2799. Reason: This candidate is a duplicate of CVE-2005-2799. Notes: All CVE users should reference CVE-2005-2799 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 Sept 2005
    4.3
    Medium

    CVE-2005-2884

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in events.php in Land Down Under (LDU) 801 and earlier allows remote attackers to inject arbitrary web script or HTML via the Description field in an event.

    Published: 14 Sept 2005
    5
    Medium

    CVE-2005-2892

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) in the u parameter.

    Published: 14 Sept 2005
    4.3
    Medium

    CVE-2005-2900

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in top.php in CjLinkOut 1.0 allows remote attackers to inject arbitrary web script or HTML via the 123 parameter.

    Published: 14 Sept 2005
    5
    Medium

    CVE-2005-2916

    Last Modified: 16 Apr 2026

    Linksys WRT54G 3.01.03, 3.03.6, 4.00.7, and possibly other versions before 4.20.7, does not verify user authentication until after an HTTP POST request has been processed, which allows remote attackers to (1) modify configuration using restore.cgi or (2) upload new firmware using upgrade.cgi.

    Published: 14 Sept 2005
    7.5
    High

    CVE-2005-2875

    Last Modified: 16 Apr 2026

    Py2Play allows remote attackers to execute arbitrary Python code via pickled objects, which Py2Play unpickles and executes.

    Published: 13 Sept 2005
    7.5
    High

    CVE-2005-2878

    Last Modified: 16 Apr 2026

    Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command.

    Published: 13 Sept 2005
    7.2
    High

    CVE-2005-2876

    Last Modified: 16 Apr 2026

    umount in util-linux 2.8 to 2.12q, 2.13-pre1, and 2.13-pre2, and other packages such as loop-aes-utils, allows local users with unmount permissions to gain privileges via the -r (remount) option, which causes the file system to be remounted with just the read-only flag, which effectively clears the nosuid, nodev, and other flags.

    Published: 13 Sept 2005
    5
    Medium

    CVE-2005-3573

    Last Modified: 16 Apr 2026

    Scrubber.py in Mailman 2.1.5-8 does not properly handle UTF8 character encodings in filenames of e-mail attachments, which allows remote attackers to cause a denial of service (application crash).

    Published: 12 Sept 2005
    3.6
    Low

    CVE-2005-2492

    Last Modified: 16 Apr 2026

    The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.

    Published: 9 Sept 2005
    7.5
    High

    CVE-2005-2871

    Last Modified: 16 Apr 2026

    Buffer overflow in the International Domain Name (IDN) support in Mozilla Firefox 1.0.6 and earlier, and Netscape 8.0.3.3 and 7.2, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a hostname with all "soft" hyphens (character 0xAD), which is not properly handled by the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec.

    Published: 9 Sept 2005
    6.4
    Medium

    CVE-2005-4744

    Last Modified: 16 Apr 2026

    Off-by-one error in the sql_error function in sql_unixodbc.c in FreeRADIUS 1.0.2.5-5, and possibly other versions including 1.0.4, might allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing the external database query to fail. NOTE: this single issue is part of a larger-scale disclosure, originally by SUSE, which reported multiple issues that were disputed by FreeRADIUS. Disputed issues included file descriptor leaks, memory disclosure, LDAP injection, and other issues. Without additional information, the most recent FreeRADIUS report is being regarded as the authoritative source for this CVE identifier.

    Published: 9 Sept 2005
    2.1
    Low

    CVE-2005-3044

    Last Modified: 16 Apr 2026

    Multiple vulnerabilities in Linux kernel before 2.6.13.2 allow local users to cause a denial of service (kernel OOPS from null dereference) via (1) fput in a 32-bit ioctl on 64-bit x86 systems or (2) sockfd_put in the 32-bit routing_ioctl function on 64-bit systems.

    Published: 9 Sept 2005
    5
    Medium

    CVE-2005-2020

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in the web server for 3Com Network Supervisor 5.0.2 allows remote attackers to read arbitrary files via ".." sequences in the URL to TCP port 21700.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2841

    Last Modified: 16 Apr 2026

    Buffer overflow in Firewall Authentication Proxy for FTP and/or Telnet Sessions for Cisco IOS 12.2ZH and 12.2ZL, 12.3 and 12.3T, and 12.4 and 12.4T allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted user authentication credentials.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2842

    Last Modified: 16 Apr 2026

    Buffer overflow in dwrcs.exe in DameWare Mini Remote Control before 4.9.0 allows remote attackers to execute arbitrary code via the username.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2843

    Last Modified: 16 Apr 2026

    Helpdesk software Hesk 0.92 does not properly verify usernames and passwords, which allows remote attackers to bypass authentication via a direct request to admin_main.php.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2847

    Last Modified: 16 Apr 2026

    img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.

    Published: 8 Sept 2005
    5
    Medium

    CVE-2005-2848

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

    Published: 8 Sept 2005
    5
    Medium

    CVE-2005-2850

    Last Modified: 16 Apr 2026

    SlimFTPd 3.17 allows remote attackers to cause a denial of service (crash) via certain (1) USER and (2) PASS commands, possibly due to a buffer overflow or off-by-one error.

    Published: 8 Sept 2005
    2.1
    Low

    CVE-2005-2851

    Last Modified: 16 Apr 2026

    smb4k 0.4 and other versions before 0.6.3 allows local users to read sensitive files via a symlink attack on the (1) smb4k.tmp or (2) sudoers temporary files.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2857

    Last Modified: 16 Apr 2026

    Free SMTP Server 2.2 allows remote attackers to use the server as an open mail relay (spam proxy).

    Published: 8 Sept 2005
    5
    Medium

    CVE-2005-2858

    Last Modified: 16 Apr 2026

    The Fetch.FetchContact.1 ActiveX control (Fetch.dll) for Rediff Bol 7.0 allows remote attackers to read the Windows Address Book via the FullAddressBook method.

    Published: 8 Sept 2005
    4.6
    Medium

    CVE-2005-2859

    Last Modified: 16 Apr 2026

    Savant Web Server stores user credentials in plaintext in the Savant\Users registry key, which allows local users to gain privileges.

    Published: 8 Sept 2005
    4.3
    Medium

    CVE-2005-2863

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in openwebmail-main.pl in OpenWebMail 2.41 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.

    Published: 8 Sept 2005
    2.1
    Low

    CVE-2005-2864

    Last Modified: 16 Apr 2026

    URBAN 1.5.3_1 allows local users to overwrite arbitrary files via a symlink attack on the (1) high score or (2) save game files.

    Published: 8 Sept 2005
    4.6
    Medium

    CVE-2005-2866

    Last Modified: 16 Apr 2026

    Mercora IMRadio 4.0.0.0 stores usernames and passwords in plaintext in the MercoraClient\Profiles registry key, which allows local users to gain privileges.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2867

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in BlueWhaleCRM allows remote attackers to execute arbitrary SQL commands via the Account ID field.

    Published: 8 Sept 2005
    5
    Medium

    CVE-2005-2845

    Last Modified: 16 Apr 2026

    Ariba Spend Management System sends the username and password to the server in plaintext in a POST request, which allows remote attackers to obtain sensitive information.

    Published: 8 Sept 2005
    5
    Medium

    CVE-2005-2854

    Last Modified: 16 Apr 2026

    CRLF injection vulnerability in thesitewizard.com chfeedback.pl Feedback Form Perl Script 2.0.1 allows remote attackers to use the script as a mail relay (spam proxy) via CRLF sequences in the (1) name or (2) email fields, which are injected into mail headers.

    Published: 8 Sept 2005
    4.3
    Medium

    CVE-2005-2860

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.

    Published: 8 Sept 2005
    4.3
    Medium

    CVE-2005-2861

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in N-Stealth Commercial Edition before 5.8.0.38 and Free Edition before 5.8.1.03 allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2846

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in lang.php in CMS Made Simple 0.10 and earlier allows remote attackers to execute arbitrary PHP code via the nls[file][vx][vxsfx] parameter.

    Published: 8 Sept 2005
    4.3
    Medium

    CVE-2005-2853

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in GuppY 4.5.3a and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the pg parameter to printfaq.php, or the (2) Referer or (3) User-Agent HTTP headers, which are not properly handled by error.php.

    Published: 8 Sept 2005
    4.3
    Medium

    CVE-2005-2855

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Unclassified NewsBoard 1.5.3 allows remote attackers to inject arbitrary web script or HTML via the description field.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2856

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products including (1) ALZip 5.51 through 6.11, (2) Servant Salamander 2.0 and 2.5 Beta 1, (3) WinHKI 1.66 and 1.67, (4) ExtractNow 3.x, (5) Total Commander 6.53, (6) Anti-Trojan 5.5.421, (7) PowerArchiver before 9.61, (8) UltimateZip 2.7,1, 3.0.3, and 3.1b, (9) Where Is It (WhereIsIt) 3.73.501, (10) FilZip 3.04, (11) IZArc 3.5 beta3, (12) Eazel 1.0, (13) Rising Antivirus 18.27.21 and earlier, (14) AutoMate 6.1.0.0, (15) BitZipper 4.1 SR-1, (16) ZipTV, and other products, allows user-assisted attackers to execute arbitrary code via a long filename in an ACE archive.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2862

    Last Modified: 16 Apr 2026

    ADSL Road Runner modem in the Annex A family has a service running on port 224, which allows remote attackers to login to the modem with a blank password and gain unauthorized access.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2865

    Last Modified: 16 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in aMember Pro 2.3.4 allow remote attackers to execute arbitrary PHP code via the config[root_dir] parameter to (1) mysql.inc.php, (2) efsnet.inc.php, (3) theinternetcommerce.inc.php, (4) cdg.inc.php, (5) compuworld.inc.php, (6) directone.inc.php, (7) authorize_aim.inc.php, (8) beanstream.inc.php, (9) config.inc.php, (10) eprocessingnetwork.inc.php, (11) eway.inc.php, (12) linkpoint.inc.php, (13) logiccommerce.inc.php, (14) netbilling.inc.php, (15) payflow_pro.inc.php, (16) paymentsgateway.inc.php, (17) payos.inc.php, (18) payready.inc.php, or (19) plugnplay.inc.php.

    Published: 8 Sept 2005
    4.3
    Medium

    CVE-2005-2869

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the Username to libraries/auth/cookie.auth.lib.php or (2) the error parameter to error.php.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2870

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the net-svc script on Solaris 10 allows remote authenticated users to execute arbitrary code on a DHCP client via certain DHCP responses.

    Published: 8 Sept 2005
    7.5
    High

    CVE-2005-2844

    Last Modified: 16 Apr 2026

    Buffer overflow in MMClient.exe in Indiatimes Messenger 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long group name argument to the RenameGroup function in the MMClient.MunduMessenger.1 ActiveX object.

    Published: 8 Sept 2005