CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2005-2643

    Last Modified: 16 Apr 2026

    Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor servers to obtain the keys that a client uses for other systems in the circuit.

    Published: 21 Aug 2005
    6.4
    Medium

    CVE-2005-2646

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to cause a denial of service or read files via unknown vectors involving crafted HTTP requests.

    Published: 21 Aug 2005
    4.3
    Medium

    CVE-2005-2649

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in ATutor 1.5.1 allows remote attackers to inject arbitrary web script or HTML via (1) course parameter in login.php or (2) words parameter in search.php.

    Published: 21 Aug 2005
    7.5
    High

    CVE-2005-2644

    Last Modified: 16 Apr 2026

    Buffer overflow in JaguarEditControl.dll in Isemarket JaguarControl allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Jtext field.

    Published: 21 Aug 2005
    4.3
    Medium

    CVE-2005-2647

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitrary web script or HTML and modify web pages via unknown vectors.

    Published: 21 Aug 2005
    7.5
    High

    CVE-2005-2641

    Last Modified: 16 Apr 2026

    Unknown vulnerability in pam_ldap before 180 does not properly handle a new password policy control, which could allow attackers to gain privileges. NOTE: CVE-2005-2497 had also been assigned to this issue, but CVE-2005-2641 is the correct candidate.

    Published: 21 Aug 2005
    5
    Medium

    CVE-2005-2648

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in index.php in W-Agora 4.2.0 and earlier allows remote attackers to read arbitrary files via the site parameter.

    Published: 21 Aug 2005
    7.5
    High

    CVE-2005-2631

    Last Modified: 16 Apr 2026

    Cisco Clean Access (CCA) 3.3.0 to 3.3.9, 3.4.0 to 3.4.5, and 3.5.0 to 3.5.3 does not properly authenticate users when invoking API methods, which could allow remote attackers to bypass security checks, change the assigned role of a user, or disconnect users.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2632

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in login_admin_mediabox404.php in mediabox404 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the User field.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2633

    Last Modified: 16 Apr 2026

    Multiple PHP file inclusion vulnerabilities in (1) admin_o.php, (2) board_o.php, (3) dev_o.php, (4) file_o.php or (5) tech_o.php in PHPTB Topic Board 2.0 and earlier allow remote attackers to execute arbitrary PHP code via the absolutepath parameter.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2637

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) Match or (2) CatID parameter to SearchResults.php, or (3) the password to AccessControl.php.

    Published: 20 Aug 2005
    4.3
    Medium

    CVE-2005-2638

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) NewsMode parameter to NewsCategoryForm.php, or the (2) Match or (3) NewsMode parameter to SearchResults.php.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2639

    Last Modified: 16 Apr 2026

    Buffer overflow in Chris Moneymaker's World Poker Championship 1.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long nickname.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-0357

    Last Modified: 16 Apr 2026

    EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.

    Published: 20 Aug 2005
    5
    Medium

    CVE-2005-2635

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) layerstyle parameter to adlayer.php or (2) language parameter to js-form.php.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-0358

    Last Modified: 16 Apr 2026

    EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.

    Published: 20 Aug 2005
    6.4
    Medium

    CVE-2005-0359

    Last Modified: 16 Apr 2026

    The Legato PortMapper in EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 does not restrict access to the pmap_set and pmap_unset commands, which allows remote attackers to (1) cause a denial of service by using pmap_unset to un-register a NetWorker service, or (2) obtain sensitive information from NetWorker services by using pmap_set to register a new service.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2636

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in lib-view-direct.inc.php in phpAdsNew and phpPgAds before 2.0.6 allows remote attackers to execute arbitrary SQL commands via the clientid parameter.

    Published: 20 Aug 2005
    5
    Medium

    CVE-2005-2640

    Last Modified: 16 Apr 2026

    Behavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid usernames via an IKE Aggressive Mode packet, which generates a response if the username is valid but does not respond when the username is invalid.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2634

    Last Modified: 16 Apr 2026

    Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long request.

    Published: 20 Aug 2005
    7.5
    High

    CVE-2005-2665

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in expires.c in Elm 2.5 PL5 through PL7, and possibly other versions, allows remote attackers to execute arbitrary code via an e-mail message with a long Expires header.

    Published: 20 Aug 2005
    7.6
    High

    CVE-2005-2501

    Last Modified: 16 Apr 2026

    Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2 allows external user-assisted attackers to execute arbitrary code via a crafted Rich Text Format (RTF) file.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2505

    Last Modified: 16 Apr 2026

    Buffer overflow in CoreFoundation in Mac OS X 10.3.9 allows attackers to execute arbitrary code via command line arguments to an application that uses CoreFoundation.

    Published: 19 Aug 2005
    5
    Medium

    CVE-2005-2506

    Last Modified: 16 Apr 2026

    Algorithmic complexity vulnerability in CoreFoundation in Mac OS X 10.3.9 and 10.4.2 allows attackers to cause a denial of service (CPU consumption) via crafted Gregorian dates.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2507

    Last Modified: 16 Apr 2026

    Buffer overflow in Directory Services in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to execute arbitrary code during authentication.

    Published: 19 Aug 2005
    10
    Critical

    CVE-2005-2511

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Mac OS X 10.4.2 and earlier, when using Kerberos authentication with LDAP, allows attackers to gain access to a root Terminal window.

    Published: 19 Aug 2005
    2.1
    Low

    CVE-2005-2512

    Last Modified: 16 Apr 2026

    Mail.app in Mac OS 10.4.2 and earlier, when printing or forwarding an HTML message, loads remote images even when the user's preferences state otherwise, which could result in a privacy leak.

    Published: 19 Aug 2005
    5
    Medium

    CVE-2005-2513

    Last Modified: 16 Apr 2026

    Unknown vulnerability in HItoolbox for Mac OS X 10.4.2 allows VoiceOver services to read secure input fields.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2514

    Last Modified: 16 Apr 2026

    Buffer overflow in ping in Mac OS X 10.3.9 allows local users to execute arbitrary code.

    Published: 19 Aug 2005
    4.6
    Medium

    CVE-2005-2515

    Last Modified: 16 Apr 2026

    Quartz Composer Screen Saver in Mac OS X 10.4.2 allows local users to access links from the RSS Visualizer even when a password is required.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2516

    Last Modified: 16 Apr 2026

    Safari in Mac OS X 10.3.9 and 10.4.2, when rendering Rich Text Format (RTF) files, can directly access URLs without performing the normal security checks, which allows remote attackers to execute arbitrary commands.

    Published: 19 Aug 2005
    7.2
    High

    CVE-2005-2519

    Last Modified: 16 Apr 2026

    slpd in Directory Services in Mac OS X 10.3.9 creates insecure temporary files as root, which allows local users to gain privileges.

    Published: 19 Aug 2005
    2.1
    Low

    CVE-2005-2520

    Last Modified: 16 Apr 2026

    The password assistant in Mac OS X 10.4 to 10.4.2, when used to create multiple accounts from the same process, does not reset the suggested password list when the assistant is displayed, which allows attackers to view recently used passwords.

    Published: 19 Aug 2005
    4.6
    Medium

    CVE-2005-2521

    Last Modified: 16 Apr 2026

    Buffer overflow in traceroute in Mac OS X 10.3.9 allows local users to execute arbitrary code via unknown vectors.

    Published: 19 Aug 2005
    5.1
    Medium

    CVE-2005-2522

    Last Modified: 16 Apr 2026

    Safari in WebKit in Mac OS X 10.4 to 10.4.2 directly accesses URLs within PDF files without the normal security checks, which allows remote attackers to execute arbitrary code via links in a PDF file.

    Published: 19 Aug 2005
    4.3
    Medium

    CVE-2005-2523

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Weblog Server in Mac OS X 10.4 to 10.4.2 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.

    Published: 19 Aug 2005
    5
    Medium

    CVE-2005-2621

    Last Modified: 16 Apr 2026

    index.php in ECW-Shop 6.0.2 allows remote attackers to obtain sensitive information via the (1) min or (2) max parameter with a "'" (single quote), which reveals the path in an error message, possibly due to a SQL injection vulnerability.

    Published: 19 Aug 2005
    4.3
    Medium

    CVE-2005-2622

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 6.0.2 allows remote attackers to inject arbitrary web script or HTML via the (1) max or (2) ctg parameter.

    Published: 19 Aug 2005
    5
    Medium

    CVE-2005-2624

    Last Modified: 16 Apr 2026

    Eval injection vulnerability in CPAINT 1.3-SP allows remote attackers to execute arbitrary ASP code via the cpaint_argument[] parameter to (1) calculator.asp or (2) cpaintfile.asp, which is directly fed into an eval statement.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2625

    Last Modified: 16 Apr 2026

    Incomplete blacklist vulnerability in the checkBlacklist function in CPAINT allows remote attackers to execute arbitrary commands via the (1) ExecuteGlobal function or (2) GetRef statement, which is not included in the blacklist.

    Published: 19 Aug 2005
    5.1
    Medium

    CVE-2005-2502

    Last Modified: 16 Apr 2026

    Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit, allows external user-assisted attackers to execute arbitrary code via a crafted Microsoft Word file.

    Published: 19 Aug 2005
    4.6
    Medium

    CVE-2005-2503

    Last Modified: 16 Apr 2026

    AppKit for Mac OS X 10.3.9 and 10.4.2 allows attackers with physical access to create local accounts by forcing a particular error to occur at the login window.

    Published: 19 Aug 2005
    2.1
    Low

    CVE-2005-2509

    Last Modified: 16 Apr 2026

    Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.

    Published: 19 Aug 2005
    5
    Medium

    CVE-2005-2526

    Last Modified: 16 Apr 2026

    CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2127

    Last Modified: 16 Apr 2026

    Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for use within Internet Explorer, as originally demonstrated using the (1) DDS Library Shape Control (Msdds.dll) COM object, and other objects including (2) Blnmgrps.dll, (3) Ciodm.dll, (4) Comsvcs.dll, (5) Danim.dll, (6) Htmlmarq.ocx, (7) Mdt2dd.dll (as demonstrated using a heap corruption attack with uninitialized memory), (8) Mdt2qd.dll, (9) Mpg4ds32.ax, (10) Msadds32.ax, (11) Msb1esen.dll, (12) Msb1fren.dll, (13) Msb1geen.dll, (14) Msdtctm.dll, (15) Mshtml.dll, (16) Msoeacct.dll, (17) Msosvfbr.dll, (18) Mswcrun.dll, (19) Netshell.dll, (20) Ole2disp.dll, (21) Outllib.dll, (22) Psisdecd.dll, (23) Qdvd.dll, (24) Repodbc.dll, (25) Shdocvw.dll, (26) Shell32.dll, (27) Soa.dll, (28) Srchui.dll, (29) Stobject.dll, (30) Vdt70.dll, (31) Vmhelper.dll, and (32) Wbemads.dll, aka a variant of the "COM Object Instantiation Memory Corruption vulnerability."

    Published: 19 Aug 2005
    7.2
    High

    CVE-2005-2504

    Last Modified: 16 Apr 2026

    The System Profiler in Mac OS X 10.4.2 labels a Bluetooth device with "Requires Authentication: No" even when the user has selected the "Require pairing for security" option, which could confuse users about which setting is valid.

    Published: 19 Aug 2005
    4.6
    Medium

    CVE-2005-2510

    Last Modified: 16 Apr 2026

    The Server Admin tool in servermgr_ipfilter for Mac OS X 10.4 to 10.4.2, when using multiple subnets and Address Groups, does not always properly write firewall rules to the Active Rules when certain conditions occur, which could result in firewall policies that are less restrictive than intended by the administrator.

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2518

    Last Modified: 16 Apr 2026

    Buffer overflow in servermgrd in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to execute arbitrary code during authentication.

    Published: 19 Aug 2005
    5
    Medium

    CVE-2005-2525

    Last Modified: 16 Apr 2026

    CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, which allows remote attackers to cause a denial of service (printing halt).

    Published: 19 Aug 2005
    7.5
    High

    CVE-2005-2627

    Last Modified: 16 Apr 2026

    Multiple integer underflows in Kismet before 2005-08-R1 allow remote attackers to execute arbitrary code via (1) kernel headers in a pcap file or (2) data frame dissection, which leads to heap-based buffer overflows.

    Published: 19 Aug 2005