CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2005-1647

    Last Modified: 16 Apr 2026

    Gurgens (GASoft) Guest Book 2.1 stores the db/Genid.dat database file under the web document root with insufficient access control, which allows remote attackers to obtain and decrypt usernames and passwords.

    Published: 18 May 2005
    5
    Medium

    CVE-2005-1650

    Last Modified: 16 Apr 2026

    The web mail service in Woppoware PostMaster 4.2.2 (build 3.2.5) generates different error messages depending on whether a user exists or not, which allows remote attackers to determine valid usernames.

    Published: 18 May 2005
    4.3
    Medium

    CVE-2005-1659

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to inject arbitrary Javascript via a URL with a "..." (triple dot) followed by an onmouseover event.

    Published: 18 May 2005
    6.4
    Medium

    CVE-2005-1664

    Last Modified: 16 Apr 2026

    The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one view to a different view, (2) reuse ViewState information after the application's state has changed, or (3) use the ViewState to conduct attacks or expose content to third parties.

    Published: 18 May 2005
    7.5
    High

    CVE-2005-1648

    Last Modified: 16 Apr 2026

    Gurgens (GASoft) Ultimate Forum 1.0 stores the db/Genid.dat database file under the web document root with insufficient access control, which allows remote attackers to obtain and decrypt usernames and passwords.

    Published: 18 May 2005
    5
    Medium

    CVE-2005-1658

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to list the parent directory of the web root via a URL with a "..." (triple dot).

    Published: 18 May 2005
    7.5
    High

    CVE-2005-1666

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in Orenosv HTTP/FTP Server 0.8.1 allow remote authenticated users to cause a denial of service (server crash) and possibly execute arbitrary code via long arguments to FTP commands such as MKD, RMD, or DELE, which are processed by the (1) ftp_xlate_path, (2) ftp_is_canonical, or (3) os_fn_nativize functions, or (4) a long SSI command that is processed by the parse_cmd function in cgissi.exe.

    Published: 18 May 2005
    4.6
    Medium

    CVE-2005-0134

    Last Modified: 16 Apr 2026

    The X server in SCO UnixWare 7.1.1, 7.1.3, and 7.1.4 does not properly create socket directories in /tmp, which could allow attackers to hijack local sockets.

    Published: 18 May 2005
    5
    Medium

    CVE-2005-1649

    Last Modified: 16 Apr 2026

    The IPv6 support in Windows XP SP2, 2003 Server SP1, and Longhorn, with Windows Firewall turned off, allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet with the SYN flag set and the same destination and source address and port, a variant of CVE-2005-0688 and a reoccurrence of the "Land" vulnerability (CVE-1999-0016).

    Published: 18 May 2005
    5
    Medium

    CVE-2005-1656

    Last Modified: 16 Apr 2026

    Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20").

    Published: 18 May 2005
    7.5
    High

    CVE-2005-1657

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) deletemessage.ctml, (3) origmessage.ctml, or (4) readmessage.ctml, the Message.Id parameter to editmessage.ctml, or the (5) Message.Command parameter to messages.ctml.

    Published: 18 May 2005
    5
    Medium

    CVE-2005-1665

    Last Modified: 16 Apr 2026

    The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote attackers to cause a denial of service (CPU consumption) via deeply nested markup.

    Published: 18 May 2005
    10
    Critical

    CVE-2005-1740

    Last Modified: 16 Apr 2026

    fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute arbitrary commands, or overwrite arbitrary files via a symlink attack.

    Published: 18 May 2005
    2.1
    Low

    CVE-2005-0757

    Last Modified: 16 Apr 2026

    The xattr file system code, as backported in Red Hat Enterprise Linux 3 on 64-bit systems, does not properly handle certain offsets, which allows local users to cause a denial of service (system crash) via certain actions on an ext3 file system with extended attributes enabled.

    Published: 18 May 2005
    7.2
    High

    CVE-2005-1589

    Last Modified: 16 Apr 2026

    The pkt_ioctl function in the pktcdvd block device ioctl handler (pktcdvd.c) in Linux kernel 2.6.12-rc4 and earlier calls the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space and allows local users to cause a denial of service and possibly execute arbitrary code, a similar vulnerability to CVE-2005-1264.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1628

    Last Modified: 16 Apr 2026

    apage.cgi in WebAPP 0.9.9.2.1, and possibly earlier versions, allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1629

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in member.php for Photopost PHP Pro allows remote attackers to execute arbitrary SQL commands via the verifykey parameter.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1630

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Attachment Mod before 2.3.13, related to a "serious issue with realnames," has unknown impact and attack vectors.

    Published: 17 May 2005
    5
    Medium

    CVE-2005-1631

    Last Modified: 16 Apr 2026

    booby.php in Booby 1.0.0 and earlier allows remote attackers to view private bookmarks by guessing item IDs.

    Published: 17 May 2005
    7.2
    High

    CVE-2005-1632

    Last Modified: 16 Apr 2026

    Cheetah 0.9.15 and 0.9.16 searches the /tmp directory for modules before using the paths in the PYTHONPATH variable, which allows local users to execute arbitrary code via a malicious module in /tmp/.

    Published: 17 May 2005
    2.1
    Low

    CVE-2005-1627

    Last Modified: 16 Apr 2026

    Unknown vulnerability in Viewglob before 2.0.1, related to "a potential security issue with the Viewglob display and ssh X forwarding," has unknown impact.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1637

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in NPDS 4.8 and 5.0 allow remote attackers to execute arbitrary SQL commands via the thold parameter to (1) comments.php or (2) pollcomments.php.

    Published: 17 May 2005
    4.3
    Medium

    CVE-2005-1638

    Last Modified: 16 Apr 2026

    The _writeAttrs function in SafeHTML before 1.3.2 does not properly handle quotes in attribute values, which could allow remote attackers to exploit cross-site scripting (XSS) vulnerabilities in applications that rely on SafeHTML for protection.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1639

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Sigmaweb.DLL in Sigma ISP Manager 6.6 allows remote attackers to execute arbitrary SQL commands via the (1) username, (2) password, or (3) domain fields.

    Published: 17 May 2005
    7.2
    High

    CVE-2005-1307

    Last Modified: 16 Apr 2026

    The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory to find and execute the productname.sh script, which allows local users to execute arbitrary code by copying and calling the scripts from a user-controlled directory.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1633

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in JGS-XA JGS-Portal 3.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) anzahl_beitraege parameter to jgs_portal.php, 2) year parameter to (jgs_portal_statistik.php, 3) year parameter to (jgs_portal_beitraggraf.php, 4) tag parameter to (jgs_portal_viewsgraf.php, 5) year parameter to (jgs_portal_themengraf.php, 6) year parameter to (jgs_portal_mitgraf.php, 7) id parameter to jgs_portal_sponsor.php, or (8) the Accept-Language header to jgs_portal_log.php.

    Published: 17 May 2005
    4.3
    Medium

    CVE-2005-1634

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in JGS-XA JGS-Portal 3.0.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) anzahl_beitraege parameter to jgs_portal.php, (2) year parameter to jgs_portal_statistik.php, (3) year parameter to jgs_portal_beitraggraf.php, (4) tag parameter to jgs_portal_viewsgraf.php, (5) year parameter to jgs_portal_themengraf.php, (6) year parameter to jgs_portal_mitgraf.php, (7) id parameter to jgs_portal_sponsor.php, or (8) the Accept-Language header to jgs_portal_log.php. NOTE: this issue may stem from the same core problem as CVE-2005-1633.

    Published: 17 May 2005
    2.1
    Low

    CVE-2005-1641

    Last Modified: 16 Apr 2026

    mod_channel in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not allow protected operators to access channels that have been locked out by a key, which allows IRC users to cause a denial of service.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1642

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the verify_email function in Woltlab Burning Board 2.x and earlier allows remote attackers to execute arbitrary SQL commands via the $email variable.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1626

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in handlers.c for Pico Server (pServ) before 3.3 may allow attackers to execute arbitrary code.

    Published: 17 May 2005
    5
    Medium

    CVE-2005-1635

    Last Modified: 16 Apr 2026

    JGS-XA JGS-Portal 3.0.2 and earlier allows remote attackers to obtain the full server path via direct requests to (1) jgs_portal_ref.php, (2) jgs_portal_land.php, (3) jgs_portal_log.php, (4) jgs_portal_global_sponsor.php, (5) jgs_portal_global.php, (6) jgs_portal_system.php, (7) jgs_portal_views.php; or multiple files in the jgs_portal_include directory, including (8) jgs_portal_boardmenue.php, (9) jgs_portal_forenliste.php, (10) jgs_portal_geburtstag.php, (11) jgs_portal_guckloch.php, (12) jgs_portal_kalender.php, (13) jgs_portal_letztethemen.php, (14) jgs_portal_links.php, (15) jgs_portal_neustemember.php, (16) jgs_portal_newsboard.php, (17) jgs_portal_online.php, (18) jgs_portal_pn.php, (19) jgs_portal_portalmenue.php, (20) jgs_portal_styles.php, (21) jgs_portal_suchen.php, (22) jgs_portal_team.php, (23) jgs_portal_topforen.php, (24) jgs_portal_topposter.php, (25) jgs_portal_umfrage.php, (26) jgs_portal_useravatar.php, (27) jgs_portal_waronline.php, (28) jgs_portal_woonline.php, or (29) jgs_portal_zufallsavatar.php.

    Published: 17 May 2005
    5
    Medium

    CVE-2005-1643

    Last Modified: 16 Apr 2026

    The ZCom_BitStream::Deserialize function in Zoidcom 1.0 beta 4 and earlier allows remote attackers to cause a denial of service via a crafted UDP packet with a large size value, which causes a memory allocation error or an out-of-bounds read.

    Published: 17 May 2005
    7.5
    High

    CVE-2005-1640

    Last Modified: 16 Apr 2026

    mod_channel.bas in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not properly verify whether a host has the owner privileges required to delete IRC channel access entries, which allows remote attackers to bypass intended restrictions.

    Published: 17 May 2005
    2.1
    Low

    CVE-2005-0756

    Last Modified: 16 Apr 2026

    ptrace in Linux kernel 2.6.8.1 does not properly verify addresses on the amd64 platform, which allows local users to cause a denial of service (kernel crash).

    Published: 17 May 2005
    7.2
    High

    CVE-2005-1264

    Last Modified: 16 Apr 2026

    Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589.

    Published: 17 May 2005
    4.6
    Medium

    CVE-2005-1636

    Last Modified: 16 Apr 2026

    mysql_install_db in MySQL 4.1.x before 4.1.12 and 5.x up to 5.0.4 creates the mysql_install_db.X file with a predictable filename and insecure permissions, which allows local users to execute arbitrary SQL commands by modifying the file's contents.

    Published: 17 May 2005
    2.1
    Low

    CVE-2005-3108

    Last Modified: 16 Apr 2026

    mm/ioremap.c in Linux 2.6 on 64-bit x86 systems allows local users to cause a denial of service or an information leak via an ioremap on a certain memory map that causes the iounmap to perform a lookup of a page that does not exist.

    Published: 17 May 2005
    2.1
    Low

    CVE-2005-1762

    Last Modified: 16 Apr 2026

    The ptrace call in the Linux kernel 2.6.8.1 and 2.6.10 for the AMD64 platform allows local users to cause a denial of service (kernel crash) via a "non-canonical" address.

    Published: 17 May 2005
    10
    Critical

    CVE-2005-1365

    Last Modified: 16 Apr 2026

    Pico Server (pServ) 3.2 and earlier allows remote attackers to execute arbitrary commands via a URL with multiple leading "/" (slash) characters and ".." sequences.

    Published: 16 May 2005
    7.5
    High

    CVE-2005-1366

    Last Modified: 16 Apr 2026

    Pico Server (pServ) 3.2 and earlier allows remote attackers to obtain the source code for CGI scripts via "dirname/../cgi-bin" in a URL.

    Published: 16 May 2005
    7.5
    High

    CVE-2005-1367

    Last Modified: 16 Apr 2026

    Pico Server (pServ) 3.2 and earlier allows local users to read arbitrary files as the pServ user via a symlink to a file outside of the web document root.

    Published: 16 May 2005
    5
    Medium

    CVE-2005-1591

    Last Modified: 16 Apr 2026

    Unknown vulnerability in NIS+ on Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (rpc.nisd disabled and NIS+ unavailable) via unknown vectors.

    Published: 16 May 2005
    5
    Medium

    CVE-2005-1595

    Last Modified: 16 Apr 2026

    CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct request.

    Published: 16 May 2005
    10
    Critical

    CVE-2005-1596

    Last Modified: 16 Apr 2026

    index.php in Fusion SBX 1.2 and earlier does not properly use the extract function, which allows remote attackers to bypass authentication by setting the is_logged parameter or execute arbitrary code via the maxname2 parameter.

    Published: 16 May 2005
    7.5
    High

    CVE-2005-1598

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Invision Power Board (IPB) 2.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via a crafted cookie password hash (pass_hash) that modifies the internal $pid variable.

    Published: 16 May 2005
    4.3
    Medium

    CVE-2005-1599

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Kryloff Technologies Subject Search Server (SSServer) 1.1 allows remote attackers to inject arbitrary web script or HTML via the "Search For" field.

    Published: 16 May 2005
    7.5
    High

    CVE-2005-1600

    Last Modified: 16 Apr 2026

    A "mathematical flaw" in the implementation of the El Gamal signature algorithm for LibTomCrypt 1.0 to 1.0.2 allows attackers to generate valid signatures without having the private key.

    Published: 16 May 2005
    7.5
    High

    CVE-2005-1594

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 16 May 2005
    7.5
    High

    CVE-2005-1604

    Last Modified: 16 Apr 2026

    PHP Advanced Transfer Manager (phpATM) 1.21 allows remote attackers to upload arbitrary files via filenames containing multiple file extensions, as demonstrated using a filename ending in "php.ns", which allows execution of arbitrary PHP code.

    Published: 16 May 2005
    4.6
    Medium

    CVE-2005-1606

    Last Modified: 16 Apr 2026

    H-Sphere Winbox 2.4.2 and 2.4.3 RC1 stores sensitive information such as username and password in plaintext in world-readable log files, which allows local users to gain privileges.

    Published: 16 May 2005