CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2005-1847

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in YaMT before 0.5_2 allow attackers to execute arbitrary code via the (1) rename or (2) sort options.

    Published: 20 Jan 2005
    Unknown

    CVE-2005-0122

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-0975. Reason: This candidate is a duplicate of CVE-2005-0975. Notes: All CVE users should reference CVE-2005-0975 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 20 Jan 2005
    5
    Medium

    CVE-2005-0300

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in session.php in JSBoard 2.0.9 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the table parameter.

    Published: 20 Jan 2005
    5
    Medium

    CVE-2005-1846

    Last Modified: 16 Apr 2026

    Multiple directory traversal vulnerabilities in YaMT before 0.5_2 allow attackers to overwrite arbitrary files via the (1) rename or (2) sort options.

    Published: 20 Jan 2005
    2.6
    Low

    CVE-2005-0143

    Last Modified: 16 Apr 2026

    Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks.

    Published: 20 Jan 2005
    5
    Medium

    CVE-2005-0149

    Last Modified: 16 Apr 2026

    Thunderbird 0.6 through 0.9 and Mozilla 1.7 through 1.7.3 does not obey the network.cookie.disableCookieForMailNews preference, which could allow remote attackers to bypass the user's intended privacy and security policy by using cookies in e-mail messages.

    Published: 20 Jan 2005
    7.5
    High

    CVE-2004-1185

    Last Modified: 16 Apr 2026

    Enscript 1.6.3 does not sanitize filenames, which allows remote attackers or local users to execute arbitrary commands via crafted filenames.

    Published: 20 Jan 2005
    2.6
    Low

    CVE-2005-0144

    Last Modified: 16 Apr 2026

    Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phishing attacks.

    Published: 20 Jan 2005
    2.1
    Low

    CVE-2005-0142

    Last Modified: 16 Apr 2026

    Firefox 0.9, Thunderbird 0.6 and other versions before 0.9, and Mozilla 1.7 before 1.7.5 save temporary files with world-readable permissions, which allows local users to read certain web content or attachments that belong to other users, e.g. content that is managed by helper applications such as PDF.

    Published: 20 Jan 2005
    5
    Medium

    CVE-2005-0146

    Last Modified: 16 Apr 2026

    Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click performs a paste operation.

    Published: 20 Jan 2005
    7.5
    High

    CVE-2005-0147

    Last Modified: 16 Apr 2026

    Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentials.

    Published: 20 Jan 2005
    7.5
    High

    CVE-2005-0245

    Last Modified: 16 Apr 2026

    Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large number of arguments to a refcursor function (gram.y), which leads to a heap-based buffer overflow, a different vulnerability than CVE-2005-0247.

    Published: 20 Jan 2005
    4.6
    Medium

    CVE-2004-1184

    Last Modified: 16 Apr 2026

    The EPSF pipe support in enscript 1.6.3 allows remote attackers or local users to execute arbitrary commands via shell metacharacters.

    Published: 20 Jan 2005
    10
    Critical

    CVE-2005-0065

    Last Modified: 16 Apr 2026

    The original design of TCP does not check that the TCP sequence number in an ICMP error message is within the range of sequence numbers for data that has been sent but not acknowledged (aka "TCP sequence number checking"), which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated using (1) blind connection-reset attacks with forged "Destination Unreachable" messages, (2) blind throughput-reduction attacks with forged "Source Quench" messages, or (3) blind throughput-reduction attacks with forged ICMP messages that cause the Path MTU to be reduced. NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0080

    Last Modified: 16 Apr 2026

    The 55_options_traceback.dpatch patch for mailman 2.1.5 in Ubuntu 4.10 displays a different error message depending on whether the e-mail address is subscribed to a private list, which allows remote attackers to determine the list membership for a given e-mail address.

    Published: 19 Jan 2005
    7.5
    High

    CVE-2005-0012

    Last Modified: 27 Mar 2026

    Format string vulnerability in the a_Interface_msg function in Dillo before 0.8.3-r4 allows remote attackers to execute arbitrary code via format string specifiers in a web page.

    Published: 19 Jan 2005
    10
    Critical

    CVE-2005-0002

    Last Modified: 16 Apr 2026

    poppassd_pam 1.0 and earlier, when changing a user password, does not verify that the user entered the old password correctly, which allows remote attackers to change passwords for arbitrary users.

    Published: 19 Jan 2005
    7.5
    High

    CVE-2005-0043

    Last Modified: 16 Apr 2026

    Buffer overflow in Apple iTunes 4.7 allows remote attackers to execute arbitrary code via a long URL in (1) .m3u or (2) .pls playlist files.

    Published: 19 Jan 2005
    2.1
    Low

    CVE-2005-0118

    Last Modified: 16 Apr 2026

    helvis 1.8h2_1 and earlier stores recovery files in world readable directories with world readable permissions, which allows local users to read the recovered files of other users.

    Published: 19 Jan 2005
    2.1
    Low

    CVE-2005-0119

    Last Modified: 16 Apr 2026

    helvis 1.8h2_1 and earlier allows local users to recover and read the files of other users via the elvrec setuid program.

    Published: 19 Jan 2005
    2.1
    Low

    CVE-2005-0120

    Last Modified: 16 Apr 2026

    helvis 1.8h2_1 and earlier allows local users to delete arbitrary files via the elvprsv setuid program.

    Published: 19 Jan 2005
    4.6
    Medium

    CVE-2005-0121

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in golddig 2.0 and earlier allow local users to execute arbitrary code via (1) a long map name command line argument or (2) a long username as recorded in the USER environment variable.

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0186

    Last Modified: 16 Apr 2026

    Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Telephony (SRST), allows remote attackers to cause a denial of service (device reboot) via a malformed packet to the SCCP port.

    Published: 19 Jan 2005
    4.6
    Medium

    CVE-2005-0004

    Last Modified: 16 Apr 2026

    The mysqlaccess script in MySQL 4.0.23 and earlier, 4.1.x before 4.1.10, 5.0.x before 5.0.3, and other versions including 3.x, allows local users to overwrite arbitrary files or read temporary files via a symlink attack on temporary files.

    Published: 19 Jan 2005
    7.5
    High

    CVE-2005-0084

    Last Modified: 16 Apr 2026

    Buffer overflow in the X11 dissector in Ethereal 0.8.10 through 0.10.8 allows remote attackers to execute arbitrary code via a crafted packet.

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0010

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the MMSE dissector in Ethereal 0.10.4 through 0.10.8 allows remote attackers to cause a denial of service by triggering a free of statically allocated memory.

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0006

    Last Modified: 16 Apr 2026

    The COPS dissector in Ethereal 0.10.6 through 0.10.8 allows remote attackers to cause a denial of service (infinite loop).

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0007

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the DLSw dissector in Ethereal 0.10.6 through 0.10.8 allows remote attackers to cause a denial of service (application crash from assertion).

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0008

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the DNP dissector in Ethereal 0.10.5 through 0.10.8 allows remote attackers to cause "memory corruption."

    Published: 19 Jan 2005
    5
    Medium

    CVE-2005-0009

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the Gnutella dissector in Ethereal 0.10.6 through 0.10.8 allows remote attackers to cause a denial of service (application crash).

    Published: 19 Jan 2005
    7.5
    High

    CVE-2005-0086

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in less in Red Hat Enterprise Linux 3 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted file, as demonstrated using the UTF-8 locale.

    Published: 19 Jan 2005
    2.6
    Low

    CVE-2005-0141

    Last Modified: 16 Apr 2026

    Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links "with a custom getter and toString method" that are middle-clicked by the user to be opened in a new tab.

    Published: 19 Jan 2005
    7.5
    High

    CVE-2005-0297

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Oracle Database 9i and 10g allows remote attackers to execute arbitrary SQL commands and gain privileges.

    Published: 18 Jan 2005
    7.5
    High

    CVE-2005-0116

    Last Modified: 16 Apr 2026

    AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.

    Published: 18 Jan 2005
    7.5
    High

    CVE-2005-0064

    Last Modified: 16 Apr 2026

    Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc for xpdf 3.00 and earlier allows remote attackers to execute arbitrary code via a PDF file with a large /Encrypt /Length keyLength value.

    Published: 18 Jan 2005
    9.8
    Critical

    CVE-2005-0102

    Last Modified: 16 Apr 2026

    Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.

    Published: 18 Jan 2005
    7.5
    High

    CVE-2005-0292

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in index.php in PHP Gift Registry (phpGiftReg) 1.4.0, and possibly other versions before 1.5.0b1, allow remote attackers to execute arbitrary SQL commands via the (1) messageid, (2) shopper, (3) shopfor, or (4) itemid parameters.

    Published: 17 Jan 2005
    4.3
    Medium

    CVE-2005-0221

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in login.php in Gallery 2.0 Alpha allows remote attackers to inject arbitrary web script or HTML via the g2_form[subject] field.

    Published: 17 Jan 2005
    7.5
    High

    CVE-2005-0290

    Last Modified: 16 Apr 2026

    NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to bypass the filters using hex encoded URLs, as demonstrated using a hex encoded file extension.

    Published: 17 Jan 2005
    4.6
    Medium

    CVE-2005-0295

    Last Modified: 16 Apr 2026

    npptnt2.sys in nProtect Gameguard provides unrestricted I/O to any process that calls it, which allows local users to gain privileges.

    Published: 17 Jan 2005
    4.3
    Medium

    CVE-2005-0291

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in the log viewer in NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via a blocked URL phrase.

    Published: 17 Jan 2005
    5
    Medium

    CVE-2005-0296

    Last Modified: 16 Apr 2026

    NOTE: this issue has been disputed by the vendor. The error module in Novell GroupWise WebAccess allows remote attackers who have not authenticated to read potentially sensitive information, such as the version, via an incorrect login and a modified (1) error or (2) modify parameter that returns template files or the "about" information page. NOTE: the vendor has disputed this issue

    Published: 17 Jan 2005
    7.5
    High

    CVE-2005-0005

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and possibly earlier versions allows remote attackers to execute arbitrary code via a .PSD image file with a large number of layers.

    Published: 17 Jan 2005
    5
    Medium

    CVE-2005-0294

    Last Modified: 16 Apr 2026

    minis.php in Minis 0.2.1 allows remote attackers to cause a denial of service (infinite loop) via an HTTP request for a file that the web server does not have permission to read, as demonstrated using the month parameter.

    Published: 16 Jan 2005
    4.7
    Medium

    CVE-2005-3106

    Last Modified: 16 Apr 2026

    Race condition in Linux 2.6, when threads are sharing memory mapping via CLONE_VM (such as linuxthreads and vfork), might allow local users to cause a denial of service (deadlock) by triggering a core dump while waiting for a thread that has just performed an exec.

    Published: 15 Jan 2005
    7.2
    High

    CVE-2005-0113

    Last Modified: 16 Apr 2026

    inpview in SGI IRIX allows local users to execute arbitrary commands via the SUN_TTSESSION_CMD environment variable, which is executed by inpview without dropping privileges.

    Published: 14 Jan 2005
    2.6
    Low

    CVE-2005-0110

    Last Modified: 16 Apr 2026

    Internet Explorer 6 on Windows XP SP2 allows remote attackers to bypass the file download warning dialog and possibly trick an unknowledgeable user into executing arbitrary code via a web page with a body element containing an onclick tag, as demonstrated using the createElement function.

    Published: 14 Jan 2005
    5
    Medium

    CVE-2004-1093

    Last Modified: 16 Apr 2026

    Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "use of already freed memory."

    Published: 14 Jan 2005
    5
    Medium

    CVE-2004-1009

    Last Modified: 16 Apr 2026

    Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.

    Published: 14 Jan 2005
    5
    Medium

    CVE-2004-1174

    Last Modified: 16 Apr 2026

    direntry.c in Midnight Commander (mc) 4.5.55 and earlier allows attackers to cause a denial of service by "manipulating non-existing file handles."

    Published: 14 Jan 2005