CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2005-3858

    Last Modified: 16 Apr 2026

    Memory leak in the ip6_input_finish function in ip6_input.c in Linux kernel 2.6.12 and earlier might allow attackers to cause a denial of service via malformed IPv6 packets with unspecified parameter problems, which prevents the SKB from being freed.

    Published: 26 Aug 2005
    4.3
    Medium

    CVE-2005-2698

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in browse.php in Nephp Publisher Enterprise 3.04 allows remote attackers to inject arbitrary web script or HTML via a hex-encoded keywords parameter.

    Published: 25 Aug 2005
    7.5
    High

    CVE-2005-2694

    Last Modified: 16 Apr 2026

    Buffer overflow in WinAce 2.6.0.5, and possibly earlier versions, allows remote attackers to execute arbitrary code via a temporary (.tmp) file that contains an entry with a long file name.

    Published: 25 Aug 2005
    5
    Medium

    CVE-2005-2696

    Last Modified: 16 Apr 2026

    IBM Lotus Notes does not properly restrict access to password hashes in the Notes Address Book (NAB), which allows remote attackers to obtain sensitive information via the (1) password digest field in the Administration tab of a Lotus Notes client, (2) "PasswordDigest" and "HTTPPassword" fields in the document properties in the NAB, or (3) a direct query to the Domino LDAP server, a different vulnerability than CVE-2005-2428.

    Published: 25 Aug 2005
    7.5
    High

    CVE-2005-2697

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in search.php for MyBulletinBoard (MyBB) 1.00 Release Candidate 1 through 4 allows remote attackers to execute arbitrary SQL commands via the uid parameter. NOTE: this issue might overlap CVE-2005-0282.

    Published: 25 Aug 2005
    4.6
    Medium

    CVE-2005-2699

    Last Modified: 16 Apr 2026

    Unrestricted file upload vulnerability in admin/admin.php in PHPKit 1.6.1 allows remote authenticated administrators to execute arbitrary PHP code by uploading a .php file to the content/images/ directory using images.php. NOTE: if a PHPKit administrator must already have access to the end system to install or modify configuration of the product, then this issue might not cross privilege boundaries, and should not be included in CVE.

    Published: 25 Aug 2005
    5
    Medium

    CVE-2005-2695

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the SSL certificate checking functionality in Cisco CiscoWorks Management Center for IDS Sensors (IDSMC) 2.0 and 2.1, and Monitoring Center for Security (Security Monitor or Secmon) 1.1 through 2.0 and 2.1, allows remote attackers to spoof a Cisco Intrusion Detection Sensor (IDS) or Intrusion Prevention System (IPS).

    Published: 25 Aug 2005
    4.6
    Medium

    CVE-2005-2496

    Last Modified: 16 Apr 2026

    The xntpd ntp (ntpd) daemon before 4.2.0b, when run with the -u option and using a string to specify the group, uses the group ID of the user instead of the group, which causes xntpd to run with different privileges than intended.

    Published: 25 Aug 2005
    2.1
    Low

    CVE-2005-1842

    Last Modified: 16 Apr 2026

    VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, creates temporary log files with predictable names, which allows local users to modify arbitrary files via a symlink attack.

    Published: 24 Aug 2005
    5
    Medium

    CVE-2005-2532

    Last Modified: 16 Apr 2026

    OpenVPN before 2.0.1 does not properly flush the OpenSSL error queue when a packet can not be decrypted by the server, which allows remote authenticated attackers to cause a denial of service (client disconnection) via a large number of packets that can not be decrypted.

    Published: 24 Aug 2005
    2.1
    Low

    CVE-2005-2533

    Last Modified: 16 Apr 2026

    OpenVPN before 2.0.1, when running in "dev tap" Ethernet bridging mode, allows remote authenticated clients to cause a denial of service (memory exhaustion) via a flood of packets with a large number of spoofed MAC addresses.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2556

    Last Modified: 16 Apr 2026

    core/database_api.php in Mantis 0.19.0a1 through 1.0.0a3, with register_globals enabled, allows remote attackers to connect to internal databases by modifying the g_db_type variable and monitoring the speed of responses, as identified by bug#0005956.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2690

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the Downloads module in PostNuke 0.760-RC4b allows PostNuke administrators to execute arbitrary SQL commands via the show parameter to dl-viewdownload.php.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2691

    Last Modified: 16 Apr 2026

    includes/common.php in RunCMS 1.2 and earlier calls the extract function with EXTR_OVERWRITE on HTTP POST variables, which allows remote attackers to overwrite arbitrary variables, possibly allowing execution of arbitrary code.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2692

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in RunCMS 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) addquery and (2) subquery parameters to the newbb plus module, the forum parameter to (3) newtopic.php, (4) edit.php, or (5) reply.php in the newbb plus module, or (6) the msg_id parameter to print.php in the messages module.

    Published: 24 Aug 2005
    4.6
    Medium

    CVE-2005-1843

    Last Modified: 16 Apr 2026

    VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, allows local users to load arbitrary libraries and execute arbitrary code via the -lib command line argument.

    Published: 24 Aug 2005
    5
    Medium

    CVE-2005-2531

    Last Modified: 16 Apr 2026

    OpenVPN before 2.0.1, when running with "verb 0" and without TLS authentication, does not properly flush the OpenSSL error queue when a client fails certificate authentication to the server and causes the error to be processed by the wrong client, which allows remote attackers to cause a denial of service (client disconnection) via a large number of failed authentication attempts.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2687

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in SaveWebPortal 3.4 allows remote attackers to execute arbitrary PHP code via the (1) SITE_Path parameter to menu_dx.php or (2) CONTENTS_Dir parameter to menu_sx.php.

    Published: 24 Aug 2005
    4.3
    Medium

    CVE-2005-2688

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in SaveWebPortal 3.4 allow remote attackers to inject arbitrary web script or HTML via a large number of parameters to (1) footer.php, (2) header.php, (3) menu_dx.php, or (4) menu_sx.php, or Javascript code in the (5) HTTP_REFERER (referer) or (6) HTTP_USER_AGENT (user agent) fields.

    Published: 24 Aug 2005
    2.6
    Low

    CVE-2005-2689

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PostNuke 0.760-RC4b allows remote attackers to inject arbitrary web script or HTML via (1) the moderate parameter to the Comments module or (2) htmltext parameter to html/user.php.

    Published: 24 Aug 2005
    2.6
    Low

    CVE-2005-2534

    Last Modified: 16 Apr 2026

    Race condition in OpenVPN before 2.0.1, when --duplicate-cn is not enabled, allows remote attackers to cause a denial of service (server crash) via simultaneous TCP connections from multiple clients that use the same client certificate.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2685

    Last Modified: 16 Apr 2026

    SaveWebPortal 3.4 allows remote attackers to execute arbitrary PHP code via a direct request to admin/PhpMyExplorer/editerfichier.php, then editing the desired file to contain the PHP code, as demonstrated using header.php in the fichier parameter. NOTE: it is possible that this vulnerability stems from PhpMyExplorer, which is a separate package.

    Published: 24 Aug 2005
    7.5
    High

    CVE-2005-2686

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in SaveWebPortal 3.4 allows remote attackers to include arbitrary files and execute arbitrary local PHP programs via ".." sequences in the (1) SITE_Path parameter to menu_dx.php or (2) CONTENTS_Dir parameter to menu_sx.php.

    Published: 24 Aug 2005
    5
    Medium

    CVE-2005-2670

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in HAURI Anti-Virus products including ViRobot Expert 4.0, Advanced Server, Linux Server 2.0, and LiveCall allows remote attackers to overwrite arbitrary files via ".." sequences in filenames contained in (1) ACE, (2) ARJ, (3) CAB, (4) LZH, (5) RAR, (6) TAR and (7) ZIP files.

    Published: 23 Aug 2005
    Unknown

    CVE-2005-2671

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2041. Reason: This candidate is a duplicate of CVE-2005-2041. Notes: All CVE users should reference CVE-2005-2041 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 23 Aug 2005
    4.3
    Medium

    CVE-2005-2676

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in displayimage.php in Coppermine Photo Gallery before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via EXIF data.

    Published: 23 Aug 2005
    5
    Medium

    CVE-2005-2677

    Last Modified: 16 Apr 2026

    ACNews stores the database in a file under the web document root with a db.inc extension and insufficient access control, which allows remote attackers to obtain sensitive information such as the full pathname of the server.

    Published: 23 Aug 2005
    7.2
    High

    CVE-2005-2681

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the command line processing (CLI) logic in Cisco Intrusion Prevention System 5.0(1) and 5.0(2) allows local users with OPERATOR or VIEWER privileges to gain additional privileges via unknown vectors.

    Published: 23 Aug 2005
    7.5
    High

    CVE-2005-2682

    Last Modified: 16 Apr 2026

    aspell_setup.php in the SpellChecker plugin in DTLink AreaEdit before 0.4.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the dictionary parameter (aka the lang variable).

    Published: 23 Aug 2005
    7.5
    High

    CVE-2005-2683

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in PHPKit 1.6.1 allow remote attackers to execute arbitrary SQL commands via the (1) letter parameter to login/member.php or (2) im_receiver parameter to login/imcenter.php.

    Published: 23 Aug 2005
    7.5
    High

    CVE-2005-2684

    Last Modified: 16 Apr 2026

    nquser.php in Virtual Edge Netquery 3.11 allows remote attackers to execute arbitrary commands via shell metacharacters in the host parameter to a dig query.

    Published: 23 Aug 2005
    7.5
    High

    CVE-2005-2673

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers to execute arbitrary SQL commands via the (1) x or (2) y parameters.

    Published: 23 Aug 2005
    4.3
    Medium

    CVE-2005-2674

    Last Modified: 16 Apr 2026

    Note: the vendor has disputed this issue. Multiple cross-site scripting (XSS) vulnerabilities in Land Down Under (LDU) 800 allow remote attackers to inject arbitrary web script or HTML via the (1) c or (2) m parameters to index.php or (3) w parameter to journal.php. NOTE: this issue has been disputed by the vendor, who says "None of the tricks written there are working, the variables are properly sanitized and no LDU version is affected.

    Published: 23 Aug 2005
    5
    Medium

    CVE-2005-2667

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows attackers to cause a denial of service via unknown vectors, aka the "CAM TCP port vulnerability."

    Published: 23 Aug 2005
    10
    Critical

    CVE-2005-2668

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.

    Published: 23 Aug 2005
    10
    Critical

    CVE-2005-2669

    Last Modified: 16 Apr 2026

    Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows remote attackers to execute arbitrary commands via spoofed CAFT packets.

    Published: 23 Aug 2005
    7.5
    High

    CVE-2005-2675

    Last Modified: 16 Apr 2026

    Note: the vendor has disputed this issue. Multiple SQL injection vulnerabilities in Land Down Under (LDU) 800 allow remote attackers to execute arbitrary SQL commands via the (1) s or (2) m parameter to forums.php, (3) o, (4) w, (5) s, or (6) p parameter to list.php, (7) m parameter to journal.php, (8) x or (9) n parameter to forums.php, or (10) w parameter to links.php. NOTE: this issue has been disputed by the vendor, who says "None of the tricks written there are working, the variables are properly sanitized and no LDU version is affected.

    Published: 23 Aug 2005
    5
    Medium

    CVE-2005-2678

    Last Modified: 16 Apr 2026

    Microsoft IIS 5.1 and 6 allows remote attackers to spoof the SERVER_NAME variable to bypass security checks and conduct various attacks via a GET request with an http://localhost URI, which makes it appear as if the request is coming from localhost.

    Published: 23 Aug 2005
    10
    Critical

    CVE-2005-2679

    Last Modified: 16 Apr 2026

    Buffer overflow in Sysinternals Process Explorer 9.23, and other versions before 9.25, allows local users to execute arbitrary code via a long CompanyName field in the VersionInfo information in a running process.

    Published: 23 Aug 2005
    5
    Medium

    CVE-2005-2680

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in BEA WebLogic Portal 8.1 through SP4, when using entitlements, allows remote attackers to bypass access restrictions for the pages of a Book via crafted URLs.

    Published: 23 Aug 2005
    7.6
    High

    CVE-2013-4342

    Last Modified: 11 Apr 2025

    xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and makes it easier for remote attackers to gain privileges by leveraging another vulnerability in a service.

    Published: 23 Aug 2005
    5
    Medium

    CVE-2005-2459

    Last Modified: 16 Apr 2026

    The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed file that leads to a null pointer dereference, a different vulnerability than CVE-2005-2458.

    Published: 22 Aug 2005
    2.1
    Low

    CVE-2005-2664

    Last Modified: 16 Apr 2026

    Whisper 32 1.16, and possibly earlier versions, stores passwords in plaintext in memory, which allows local users to obtain the password using a debugger or another mechanism to read process memory.

    Published: 22 Aug 2005
    5
    Medium

    CVE-2005-2457

    Last Modified: 16 Apr 2026

    The driver for compressed ISO file systems (zisofs) in the Linux kernel before 2.6.12.5 allows local users and remote attackers to cause a denial of service (kernel crash) via a crafted compressed ISO file system.

    Published: 22 Aug 2005
    7.5
    High

    CVE-2005-2645

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to bypass authentication.

    Published: 21 Aug 2005
    7.5
    High

    CVE-2005-2651

    Last Modified: 16 Apr 2026

    gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter.

    Published: 21 Aug 2005
    5
    Medium

    CVE-2005-2652

    Last Modified: 16 Apr 2026

    Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) attach.php, (4) blacklist.php, (5) zorum/forum.php, (6) globalstat.php, (7) gorum/trace.php, (8) gorum/badwords.php, or (9) gorum/flood.php.

    Published: 21 Aug 2005
    4.3
    Medium

    CVE-2005-2653

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in BBCaffe 2.0 allows remote attackers to inject arbitrary web script or HTML via e-mail data in a message.

    Published: 21 Aug 2005
    4.3
    Medium

    CVE-2005-2650

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in sign.asp in Emefa Guestbook 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) location, and (3) email parameters.

    Published: 21 Aug 2005
    7.5
    High

    CVE-2005-2642

    Last Modified: 16 Apr 2026

    Buffer overflow in the mutt_decode_xbit function in Handler.c for Mutt 1.5.10 allows remote attackers to execute arbitrary code, possibly due to interactions with libiconv or gettext.

    Published: 21 Aug 2005