CVE Feed

    Dashboard / CVE

    7.2
    High

    CVE-2005-2072

    Last Modified: 16 Apr 2026

    The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs, which allows local users to gain privileges by (1) modifying LD_AUDIT to reference malicious code and possibly (2) using a long value for LD_AUDIT.

    Published: 29 Jun 2005
    4.6
    Medium

    CVE-2005-2071

    Last Modified: 16 Apr 2026

    traceroute in Sun Solaris 10 on x86 systems allows local users to execute arbitrary code with PRIV_NET_RAWACCESS privileges via (1) a large number of -g arguments or (2) a malformed -s argument with a trailing . (dot).

    Published: 29 Jun 2005
    4.3
    Medium

    CVE-2005-2074

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.0.105 allows remote attackers to inject arbitrary web script or HTML via a news or article post, possibly involving the (1) news_body, (2) article_description, or (3) article_body parameters to submit.php.

    Published: 29 Jun 2005
    7.5
    High

    CVE-2005-2079

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the Admin Plus Pack Option for VERITAS Backup Exec 9.0 through 10.0 for Windows Servers allows remote attackers to execute arbitrary code.

    Published: 29 Jun 2005
    7.5
    High

    CVE-2005-2080

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Remote Agent for Windows Servers (RAWS) in VERITAS Backup Exec 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for NetWare, allows remote attackers to gain privileges by copying the handle for the server.

    Published: 29 Jun 2005
    5
    Medium

    CVE-2005-2114

    Last Modified: 16 Apr 2026

    Mozilla 1.7.8, Firefox 1.0.4, Camino 0.8.4, Netscape 8.0.2, and K-Meleon 0.9, and possibly other products that use the Gecko engine, allow remote attackers to cause a denial of service (application crash) via JavaScript that repeatedly calls an empty function.

    Published: 29 Jun 2005
    7.5
    High

    CVE-2005-1921

    Last Modified: 16 Apr 2026

    Eval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.

    Published: 29 Jun 2005
    5
    Medium

    CVE-2005-2060

    Last Modified: 16 Apr 2026

    Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the Cat parameter.

    Published: 28 Jun 2005
    5
    Medium

    CVE-2005-2061

    Last Modified: 16 Apr 2026

    Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by a null (%00) byte.

    Published: 28 Jun 2005
    7.5
    High

    CVE-2005-2062

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to execute arbitrary SQL commands via the catid parameter to (1) default.asp or (2) buyersend.asp, (3) Administrator ID field in admin.asp, E-mail field in (4) advertiserstart.asp or (5) buyer.asp, or Keyword field in search.asp.

    Published: 28 Jun 2005
    7.5
    High

    CVE-2005-2066

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in comment_post.asp in ASP Nuke 0.80 allows remote attackers to execute arbitrary SQL statements via the TaskID parameter.

    Published: 28 Jun 2005
    7.5
    High

    CVE-2005-2067

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in article.asp in unknown versions of aspnuke allows remote attackers to execute arbitrary SQL commands via the articleid parameter.

    Published: 28 Jun 2005
    2.6
    Low

    CVE-2005-2056

    Last Modified: 16 Apr 2026

    The Quantum archive decompressor in Clam AntiVirus (ClamAV) before 0.86.1 allows remote attackers to cause a denial of service (application crash) via a crafted Quantum archive.

    Published: 28 Jun 2005
    6.5
    Medium

    CVE-2005-2059

    Last Modified: 16 Apr 2026

    Multiple cross-site request forgery (CSRF) vulnerabilities in (1) addaddress.php, (2) toggleignore.php, (3) removeignore.php, and (4) removeaddress.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to modify settings as another user via a link or IMG tag.

    Published: 28 Jun 2005
    5.1
    Medium

    CVE-2005-2054

    Last Modified: 16 Apr 2026

    Unknown vulnerability in RealPlayer 10 and 10.5 (6.0.12.1040-1069) and RealOne Player v1 and v2 allows remote attackers to overwrite arbitrary files or execute arbitrary ActiveX controls via a crafted MP3 file.

    Published: 28 Jun 2005
    6.8
    Medium

    CVE-2005-2057

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web script or HTML via the (1) Searchpage parameter to dosearch.php, (2) Number, (3) what, or (4) page parameter to newreply.php, (5) Number, (6) Board, or (7) what parameter to showprofile.php, (8) fpart or (9) page parameter to showflat.php, or (10) like parameter to showmembers.php.

    Published: 28 Jun 2005
    7.5
    High

    CVE-2005-2058

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to execute arbitrary SQL commands via the Number parameter to (1) download.php, (2) modifypost.php, (3) mailthread.php, or (4) notifymod.php, (5) month or (6) year parameter to calendar.php, (7) message parameter to viewmessage.php, (8) main parameter to addfav.php, or (9) posted parameter to grabnext.php.

    Published: 28 Jun 2005
    5
    Medium

    CVE-2005-2064

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to forgot_password.asp, or the (2) FirstName, (3) LastName, (4) Username, (5) Password, (6) Address1, (7) Address2, (8) City, (9) ZipCode, (10) Email parameter to register.asp.

    Published: 28 Jun 2005
    5
    Medium

    CVE-2005-2065

    Last Modified: 16 Apr 2026

    HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter.

    Published: 28 Jun 2005
    5
    Medium

    CVE-2005-2055

    Last Modified: 16 Apr 2026

    RealPlayer 8, 10, 10.5 (6.0.12.1040-1069), and Enterprise and RealOne Player v1 and v2 allows remote malicious web server to create an arbitrary HTML file that executes an RM file via "default settings of earlier Internet Explorer browsers".

    Published: 28 Jun 2005
    4.3
    Medium

    CVE-2005-2063

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keyword field in search.asp.

    Published: 28 Jun 2005
    4.9
    Medium

    CVE-2005-4881

    Last Modified: 23 Apr 2026

    The netlink subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.13-rc1 does not initialize certain padding fields in structures, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors, related to the (1) tc_fill_qdisc, (2) tcf_fill_node, (3) neightbl_fill_info, (4) neightbl_fill_param_info, (5) neigh_fill_info, (6) rtnetlink_fill_ifinfo, (7) rtnetlink_fill_iwinfo, (8) vif_delete, (9) ipmr_destroy_unres, (10) ipmr_cache_alloc_unres, (11) ipmr_cache_resolve, (12) inet6_fill_ifinfo, (13) tca_get_fill, (14) tca_action_flush, (15) tcf_add_notify, (16) tc_dump_action, (17) cbq_dump_police, (18) __nlmsg_put, (19) __rta_fill, (20) __rta_reserve, (21) inet6_fill_prefix, (22) rsvp_dump, and (23) cbq_dump_ovl functions.

    Published: 28 Jun 2005
    4.7
    Medium

    CVE-2005-3274

    Last Modified: 16 Apr 2026

    Race condition in ip_vs_conn_flush in Linux 2.6 before 2.6.13 and 2.4 before 2.4.32-pre2, when running on SMP systems, allows local users to cause a denial of service (null dereference) by causing a connection timer to expire while the connection table is being flushed before the appropriate lock is acquired.

    Published: 28 Jun 2005
    2.1
    Low

    CVE-2005-2708

    Last Modified: 16 Apr 2026

    The search_binary_handler function in exec.c in Linux 2.4 kernel on 64-bit x86 architectures does not check a return code for a particular function call when virtual memory is low, which allows local users to cause a denial of service (panic), as demonstrated by running a process using the bash ulimit -v command.

    Published: 28 Jun 2005
    5
    Medium

    CVE-2005-2069

    Last Modified: 16 Apr 2026

    pam_ldap and nss_ldap, when used with OpenLDAP and connecting to a slave using TLS, does not use TLS for the subsequent connection if the client is referred to a master, which may cause a password to be sent in cleartext and allows remote attackers to sniff the password.

    Published: 28 Jun 2005
    Unknown

    CVE-2005-1277

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1766. Reason: This candidate is a duplicate of CVE-2005-1766. Notes: This duplicate occurred due to insufficient coordination across three separate parties. All CVE users should reference CVE-2005-1766 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 26 Jun 2005
    1.2
    Low

    CVE-2005-1759

    Last Modified: 16 Apr 2026

    Race condition in shtool 2.0.1 and earlier allows local users to modify or create arbitrary files via a symlink attack on temporary files after they have been created, a different vulnerability than CVE-2005-1751.

    Published: 26 Jun 2005
    5
    Medium

    CVE-2005-2050

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Tor before 0.1.0.10 allows remote attackers to read arbitrary memory and possibly key information from the exit server's process space.

    Published: 26 Jun 2005
    7.5
    High

    CVE-2005-2051

    Last Modified: 16 Apr 2026

    Buffer overflow in the VERITAS Backup Exec Web Administration Console (BEWAC) 9.0 4367 through 10.0 rev. 5484 allows remote attackers to execute arbitrary code.

    Published: 26 Jun 2005
    5
    Medium

    CVE-2005-2053

    Last Modified: 16 Apr 2026

    Just another flat file (JAF) CMS before 3.0 Final allows remote attackers to obtain sensitive information via (1) an * (asterisk) in the id parameter, (2) a blank id parameter, or (3) an * (asterisk) in the disp parameter to index.php, which reveals the path in an error message. NOTE: a followup suggests that this may be a directory traversal or file inclusion vulnerability.

    Published: 26 Jun 2005
    7.5
    High

    CVE-2005-0772

    Last Modified: 16 Apr 2026

    VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an invalid (non-0) "Error Status" value, which triggers a null dereference.

    Published: 26 Jun 2005
    5.1
    Medium

    CVE-2005-2052

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in vidplin.dll in RealPlayer 10 and 10.5 (6.0.12.1040 through 1069), RealOne Player v1 and v2, RealPlayer 8 and RealPlayer Enterprise allows remote attackers to execute arbitrary code via an .avi file with a modified strf structure value.

    Published: 26 Jun 2005
    10
    Critical

    CVE-2005-0771

    Last Modified: 16 Apr 2026

    VERITAS Backup Exec Server (beserver.exe) 9.0 through 10.0 for Windows allows remote unauthenticated attackers to modify the registry by calling methods to the RPC interface on TCP port 6106.

    Published: 23 Jun 2005
    5.1
    Medium

    CVE-2005-1766

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in rtffplin.cpp in RealPlayer 10.5 6.0.12.1056 on Windows, and 10, 10.0.1.436, and other versions before 10.0.5 on Linux, allows remote attackers to execute arbitrary code via a RealMedia file with a long RealText string, such as an SMIL file.

    Published: 23 Jun 2005
    5
    Medium

    CVE-2005-1524

    Last Modified: 16 Apr 2026

    PHP file inclusion vulnerability in top_graph_header.php in Cacti 0.8.6d and possibly earlier versions allows remote attackers to execute arbitrary PHP code via the config[library_path] parameter.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-1525

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in config_settings.php for Cacti before 0.8.6e allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-1526

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in config_settings.php in Cacti before 0.8.6e allows remote attackers to execute arbitrary PHP code via the config[include_path] parameter.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-2045

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DUware DUportal PRO 3.4.3 allow remote attackers to execute arbitrary SQL commands via the (1) iChannel parameter to default.asp, (2) iData parameter to detail.asp, (3) iMem parameter to members.asp, (4) iCat parameter to cat.asp, (5) offset parameter to members_listing_approval.asp, or (6) iChannel parameter to channels_edit.asp.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-1250

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the logon screen of the web front end (NmConsole/Login.asp) for IpSwitch WhatsUp Professional 2005 SP1 allows remote attackers to execute arbitrary SQL commands via the (1) User Name field (sUserName parameter) or (2) Password (sPassword parameter).

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-2048

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DUware DUforum 3.1, and possibly other versions, allow remote attackers to execute arbitrary SQL commands via the (1) iMsg parameter to messages.asp, iFor parameter to (2) post.asp or (3) forums.asp, or (4) id parameter to userEdit.asp. NOTE: vectors 1 and 3 were later reported to affect version 3.0.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-2046

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DUware DUamazon Pro 3.0 and 3.1 allow remote attackers to execute arbitrary SQL commands via the (1) iCat parameter to cat.asp, (2) iSub parameter to sub.asp, (3) iSub parameter to detail.asp, (4) iPro parameter to review.asp, iCat parameter to (5) catEdit.asp, (6) catDelete.asp, (7) productEdit.asp, or (8) productDelete.asp, or (9) iType parameter to type.asp.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-2049

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iState parameter to default.asp or (2) iPro parameter to edit.asp.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-2047

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DUware DUpaypal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) iCat parameter to cat.asp, (2) iPro parameter to detail.asp, (3) iSub parameter to sub.asp, (4) iCat parameter to catEdit.asp.

    Published: 22 Jun 2005
    7.5
    High

    CVE-2005-2028

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php for MercuryBoard 1.1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header.

    Published: 21 Jun 2005
    7.5
    High

    CVE-2005-2037

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Fortibus CMS 4.0.0 allow remote attackers to execute arbitrary SQL commands via (1) the username or password to logon.asp, (2) WeeklyNotesDisplay.asp, or (3) the Search page.

    Published: 21 Jun 2005
    2.1
    Low

    CVE-2005-1761

    Last Modified: 16 Apr 2026

    Linux kernel 2.6 and 2.4 on the IA64 architecture allows local users to cause a denial of service (kernel crash) via ptrace and the restore_sigcontext function.

    Published: 21 Jun 2005
    7.5
    High

    CVE-2005-2009

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Ublog Reload 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) ci, (2) d, or (3) m parameter to index.asp, or the (4) bi parameter to blog_comment.asp.

    Published: 20 Jun 2005
    5
    Medium

    CVE-2005-2013

    Last Modified: 16 Apr 2026

    paFAQ 1.0 Beta 4 allows remote attackers to obtain sensitive information via a direct request to admin/backup.php, which contains a backup of the database including usernames and passwords.

    Published: 20 Jun 2005
    4.6
    Medium

    CVE-2005-2014

    Last Modified: 16 Apr 2026

    The "upload a language pack" feature in paFAQ 1.0 Beta 4 allows remote authenticated administrators to execute arbitrary PHP commands by uploading a malicious language pack.

    Published: 20 Jun 2005
    5
    Medium

    CVE-2005-2033

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in folderview.asp for Blue-Collar Productions i-Gallery 3.3 allows remote attackers to read arbitrary files and directories via the folder parameter.

    Published: 20 Jun 2005