5
    Medium

    CVE-2005-3018

    Last Modified: 18 Jun 2013

    Apple Safari allows remote attackers to cause a denial of service (application crash) via a crafted data:// URL.

    Source:Jonathan Rockway
    Published:21 Sept 2005
    7.5
    High

    CVE-2005-3010

    Last Modified: 25 May 2016

    Direct static code injection vulnerability in the flood protection feature in inc/shows.inc.php in CuteNews 1.4.0 and earlier allows remote attackers to execute arbitrary PHP code via the HTTP_CLIENT_IP header (Client-Ip), which is injected into data/flood.db.php.

    Source:rgod
    Published:21 Sept 2005
    7.5
    High

    CVE-2005-3005

    Last Modified: 18 Jun 2013

    Helpdesk Software Hesk allows remote attackers to bypass authentication for (1) admin.php and (2) admin_main.php by modifying the PHPSESSID session ID parameter or cookie.

    Source:Rajesh Sethumadhavan
    Published:21 Sept 2005
    7.5
    High

    CVE-2005-3004

    Last Modified: 18 Jun 2013

    SQL injection vulnerability in Interakt MX Shop 3.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) idp, (2) id_ctg, or (3) id_prd parameters to the pages module in index.php.

    Source:David Sopas Ferreira
    Published:21 Sept 2005
    5
    Medium

    CVE-2005-3002

    Last Modified: 16 Apr 2026

    Multi-Computer Control System (MCCS) 1.0 allows remote attackers to cause a denial of service via a malformed UDP packet.

    Source:basher13
    Published:20 Sept 2005
    7.5
    High

    CVE-2005-2989

    Last Modified: 25 Nov 2016

    Multiple SQL injection vulnerabilities in DeluxeBB 1.0 and 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) tid parameter to topic.php, the uid parameter to (2) misc.php or (3) pm.php, or the fid parameter to (3) forums.php or (4) newpost.php.

    Source:abducter
    Published:19 Sept 2005
    7.5
    High

    CVE-2005-2985

    Last Modified: 18 Jun 2013

    SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers to execute arbitrary SQL statements via the Country parameter.

    Source:alexsrb
    Published:19 Sept 2005
    4.3
    Medium

    CVE-2005-2980

    Last Modified: 18 Jun 2013

    Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary web script or HTML via the rollid parameter.

    Source:trueend5
    Published:19 Sept 2005
    7.5
    High

    CVE-2005-2979

    Last Modified: 18 Jun 2013

    SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via the rollid parameter.

    Source:trueend5
    Published:19 Sept 2005
    2.1
    Low

    CVE-2005-2973

    Last Modified: 6 Sept 2016

    The udp_v6_get_port function in udp.c in Linux 2.6 before 2.6.14-rc5, when running IPv6, allows local users to cause a denial of service (infinite loop and crash).

    Source:Rémi Denis-Courmont
    Published:4 Oct 2005
    7.5
    High

    CVE-2005-2968

    Last Modified: 19 Jun 2013

    Firefox 1.0.6 and Mozilla 1.7.10 allows attackers to execute arbitrary commands via shell metacharacters in a URL that is provided to the browser on the command line, which is sent unfiltered to bash.

    Source:eter Zelezny
    Published:6 Sept 2005
    7.5
    High

    CVE-2005-2967

    Last Modified: 10 Oct 2017

    Format string vulnerability in input_cdda.c in xine-lib 1-beta through 1-beta 3, 1-rc, 1.0 through 1.0.2, and 1.1.1 allows remote servers to execute arbitrary code via format string specifiers in metadata in CDDB server responses when the victim plays a CD.

    Source:Ulf Harnhammar
    Published:14 Oct 2005
    7.5
    High

    CVE-2005-2961

    Last Modified: 7 Jun 2016

    Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.

    Source:taviso
    Published:5 Oct 2005
    5
    Medium

    CVE-2005-2956

    Last Modified: 18 Jun 2013

    ATutor 1.5.1, and possibly earlier versions, stores temporary chat logs under the web document root with insufficient access control and predictable filenames, which allows remote attackers to obtain user chat conversations via direct requests to those files.

    Source:rgod
    Published:16 Sept 2005
    7.5
    High

    CVE-2005-2954

    Last Modified: 24 Oct 2016

    SQL injection vulnerability in password_reminder.php in ATutor before 1.5.1 pl1 allows remote attackers to execute arbitrary SQL commands via the email field.

    Source:rgod
    Published:16 Sept 2005
    4.3
    Medium

    CVE-2005-2953

    Last Modified: 17 Jun 2013

    Cross-site scripting (XSS) vulnerability in merchant.mvc in MIVA Merchant 5 allows remote attackers to inject arbitrary web script or HTML via the Customer_Login parameter.

    Published:16 Sept 2005
    5
    Medium

    CVE-2005-2952

    Last Modified: 17 Jun 2013

    Directory traversal vulnerability in s.pl in Subscribe Me Pro 2.044.09P and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the l parameter.

    Source:h4cky0u
    Published:16 Sept 2005
    7.5
    High

    CVE-2005-2951

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via ".." sequences and "%00" (trailing null byte) characters in the l parameter, which is used in an include_once statement.

    Source:rgod
    Published:16 Sept 2005
    7.5
    High

    CVE-2005-2943

    Last Modified: 7 Jun 2016

    Stack-based buffer overflow in sendmail in XMail before 1.22 allows remote attackers to execute arbitrary code via a long -t command line option.

    Source:qaaz
    Published:13 Oct 2005
    7.2
    High

    CVE-2005-2934

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 and 7.1.4 allows local users to gain privileges via unspecified vectors.

    Source:prdelka
    Published:31 Dec 2005
    7.2
    High

    CVE-2005-2925

    Last Modified: 10 Oct 2017

    runpriv in SGI IRIX allows local users to bypass intended restrictions and execute arbitrary commands via shell metacharacters in a command line for a privileged binary in /usr/sysadm/privbin.

    Source:anonymous
    Published:11 Oct 2005
    5
    Medium

    CVE-2005-2904

    Last Modified: 17 Jun 2013

    Zebedee 2.4.1, when "allowed redirection port" is not set, allows remote attackers to cause a denial of service (application crash) via a zero in the port number of the protocol option header, which triggers an assert error in the makeConnection function in zebedee.c.

    Source:Shiraishi.M
    Published:14 Sept 2005
    4.6
    Medium

    CVE-2005-2898

    Last Modified: 16 Jun 2013

    NOTE: this issue has been disputed by the vendor. FileZilla 2.2.14b and 2.2.15, and possibly earlier versions, when "Use secure mode" is disabled, uses a weak encryption scheme to store the user's password in the configuration settings file, which allows local users to obtain sensitive information. NOTE: the vendor has disputed the issue, stating that "the problem is not a vulnerability at all, but in fact a fundamental issue of every single program that can store passwords transparently.

    Published:14 Sept 2005
    7.5
    High

    CVE-2005-2896

    Last Modified: 16 Jun 2013

    SQL injection vulnerability in WEB//NEWS 1.4 allows remote attackers to execute arbitrary SQL commands via the (1) wn_userpw parameter to startup.php, (2) cat, (3) id, or (4) stof parameter to news.php, or (5) id parameter to print.php.

    Source:onkel_fisch
    Published:14 Sept 2005
    5
    Medium

    CVE-2005-2892

    Last Modified: 16 Jun 2013

    Directory traversal vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) in the u parameter.

    Source:rgod
    Published:14 Sept 2005
    7.5
    High

    CVE-2005-2885

    Last Modified: 16 Jun 2013

    The Downloads page in MAXdev MD-Pro 1.0.73, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which could allow remote attackers to bypass file extension checks and execute arbitrary commands by uploading a file with a different extension, as demonstrated using .inc files.

    Source:rgod
    Published:14 Sept 2005
    7.5
    High

    CVE-2005-2878

    Last Modified: 7 Jun 2016

    Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command.

    Source:Angelo Rosiello
    Published:13 Sept 2005
    7.5
    High

    CVE-2005-2877

    Last Modified: 6 Mar 2011

    The history (revision control) function in TWiki 02-Sep-2004 and earlier allows remote attackers to execute arbitrary code via shell metacharacters, as demonstrated via the rev parameter to TWikiUsers.

    Source:Metasploit
    Published:16 Sept 2005
    7.5
    High

    CVE-2005-2871

    Last Modified: 18 Jan 2018

    Buffer overflow in the International Domain Name (IDN) support in Mozilla Firefox 1.0.6 and earlier, and Netscape 8.0.3.3 and 7.2, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a hostname with all "soft" hyphens (character 0xAD), which is not properly handled by the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec.

    Source:Skylined
    Published:9 Sept 2005
    4.3
    Medium

    CVE-2005-2869

    Last Modified: 14 Jun 2013

    Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the Username to libraries/auth/cookie.auth.lib.php or (2) the error parameter to error.php.

    Source:Michal Cihar
    Published:8 Sept 2005
    2.1
    Low

    CVE-2005-2868

    Last Modified: 25 May 2016

    ZipTorrent 1.3.7.3 stores sensitive information in plaintext in the pref.txt file, which allows local users to obtain sensitive information such as proxy server information and passwords.

    Source:Kozan
    Published:8 Sept 2005
    4.6
    Medium

    CVE-2005-2866

    Last Modified: 16 Apr 2026

    Mercora IMRadio 4.0.0.0 stores usernames and passwords in plaintext in the MercoraClient\Profiles registry key, which allows local users to gain privileges.

    Source:Kozan
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2857

    Last Modified: 16 Apr 2026

    Free SMTP Server 2.2 allows remote attackers to use the server as an open mail relay (spam proxy).

    Source:basher13
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2856

    Last Modified: 7 Jul 2016

    Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products including (1) ALZip 5.51 through 6.11, (2) Servant Salamander 2.0 and 2.5 Beta 1, (3) WinHKI 1.66 and 1.67, (4) ExtractNow 3.x, (5) Total Commander 6.53, (6) Anti-Trojan 5.5.421, (7) PowerArchiver before 9.61, (8) UltimateZip 2.7,1, 3.0.3, and 3.1b, (9) Where Is It (WhereIsIt) 3.73.501, (10) FilZip 3.04, (11) IZArc 3.5 beta3, (12) Eazel 1.0, (13) Rising Antivirus 18.27.21 and earlier, (14) AutoMate 6.1.0.0, (15) BitZipper 4.1 SR-1, (16) ZipTV, and other products, allows user-assisted attackers to execute arbitrary code via a long filename in an ACE archive.

    Source:darkeagle
    Published:8 Sept 2005
    4.3
    Medium

    CVE-2005-2855

    Last Modified: 16 Jun 2013

    Cross-site scripting (XSS) vulnerability in Unclassified NewsBoard 1.5.3 allows remote attackers to inject arbitrary web script or HTML via the description field.

    Published:8 Sept 2005
    5
    Medium

    CVE-2005-2852

    Last Modified: 6 Mar 2011

    Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.

    Source:Metasploit
    Published:8 Sept 2005
    5
    Medium

    CVE-2005-2850

    Last Modified: 16 Jun 2013

    SlimFTPd 3.17 allows remote attackers to cause a denial of service (crash) via certain (1) USER and (2) PASS commands, possibly due to a buffer overflow or off-by-one error.

    Source:Critical Security
    Published:8 Sept 2005
    5
    Medium

    CVE-2005-2848

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

    Source:Nicolas Gregoire
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2847

    Last Modified: 6 Mar 2011

    img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.

    Source:Metasploit
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2846

    Last Modified: 29 Nov 2016

    PHP remote file inclusion vulnerability in lang.php in CMS Made Simple 0.10 and earlier allows remote attackers to execute arbitrary PHP code via the nls[file][vx][vxsfx] parameter.

    Source:groszynskif
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2844

    Last Modified: 16 Jun 2013

    Buffer overflow in MMClient.exe in Indiatimes Messenger 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long group name argument to the RenameGroup function in the MMClient.MunduMessenger.1 ActiveX object.

    Source:ViPeR
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2842

    Last Modified: 13 Sept 2017

    Buffer overflow in dwrcs.exe in DameWare Mini Remote Control before 4.9.0 allows remote attackers to execute arbitrary code via the username.

    Source:James Fitts
    Published:8 Sept 2005
    7.5
    High

    CVE-2005-2841

    Last Modified: 16 Jun 2013

    Buffer overflow in Firewall Authentication Proxy for FTP and/or Telnet Sessions for Cisco IOS 12.2ZH and 12.2ZL, 12.3 and 12.3T, and 12.4 and 12.4T allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted user authentication credentials.

    Source:Markus
    Published:8 Sept 2005
    7.2
    High

    CVE-2005-2827

    Last Modified: 16 Apr 2026

    The thread termination routine in the kernel for Windows NT 4.0 and 2000 (NTOSKRNL.EXE) allows local users to modify kernel memory and execution flow via steps in which a terminating thread causes Asynchronous Procedure Call (APC) entries to free the wrong data, aka the "Windows Kernel Vulnerability."

    Source:SoBeIt
    Published:14 Dec 2005
    4.3
    Medium

    CVE-2005-2814

    Last Modified: 16 Jun 2013

    Cross-site scripting (XSS) vulnerability in FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the usr parameter in a vis_reg operation to index.php.

    Source:rgod
    Published:7 Sept 2005
    5
    Medium

    CVE-2005-2813

    Last Modified: 14 Jun 2013

    Directory traversal vulnerability in FlatNuke 2.5.6 and possibly earlier allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) characters in the id parameter to the read mod in index.php.

    Source:rgod
    Published:7 Sept 2005
    7.5
    High

    CVE-2005-2812

    Last Modified: 25 May 2016

    man2web allows remote attackers to execute arbitrary commands via -P arguments.

    Source:tracewar
    Published:7 Sept 2005
    7.2
    High

    CVE-2005-2807

    Last Modified: 16 Jun 2013

    frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read portions of arbitrary files via the -f command line option.

    Source:rotor
    Published:7 Sept 2005
    5
    Medium

    CVE-2005-2804

    Last Modified: 13 Jul 2017

    Integer overflow in the registry parsing code in GroupWise 6.5.3, and possibly earlier version, allows remote attackers to cause a denial of service (application crash) via a large TCP/IP port in the Windows registry key.

    Source:Francisco Amato
    Published:4 Oct 2005
    2.1
    Low

    CVE-2005-2800

    Last Modified: 17 Jun 2013

    Memory leak in the seq_file implementation in the SCSI procfs interface (sg.c) in Linux kernel 2.6.13 and earlier allows local users to cause a denial of service (memory consumption) via certain repeated reads from the /proc/scsi/sg/devices file, which is not properly handled when the next() iterator returns NULL or an error.

    Source:anonymous
    Published:27 Aug 2005