4.3
    Medium

    CVE-2005-2318

    Last Modified: 5 Jun 2013

    Cross-site scripting (XSS) vulnerability in showerr.asp in DVBBS 7.1 SP2 allows remote attackers to inject arbitrary web script or HTML via the action parameter.

    Source:rUnViRuS
    Published:19 Jul 2005
    9.3
    Critical

    CVE-2005-2310

    Last Modified: 12 Jun 2013

    Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arbitrary code via an MP3 file with a long ID3v2 tag such as (1) ARTIST or (2) TITLE.

    Source:Leon Juranic
    Published:19 Jul 2005
    7.5
    High

    CVE-2005-2308

    Last Modified: 12 Jun 2013

    The JPEG decoder in Microsoft Internet Explorer allows remote attackers to cause a denial of service (CPU consumption or crash) and possibly execute arbitrary code via certain crafted JPEG images, as demonstrated using (1) mov_fencepost.jpg, (2) cmp_fencepost.jpg, (3) oom_dos.jpg, or (4) random.jpg.

    Source:Michal Zalewski
    Published:19 Jul 2005
    5
    Medium

    CVE-2005-2307

    Last Modified: 16 Apr 2026

    netman.dll in Microsoft Windows Connections Manager Library allows local users to cause a denial of service (Network Connections Service crash) via a large integer argument to a particular function, aka "Network Connection Manager Vulnerability."

    Source:bkbll
    Published:19 Jul 2005
    7.5
    High

    CVE-2005-2305

    Last Modified: 16 Apr 2026

    DG Remote Control Server 1.6.2 allows remote attackers to cause a denial of service (crash or CPU consumption) and possibly execute arbitrary code via a long message to TCP port 1071 or 1073, possibly due to a buffer overflow.

    Source:basher13
    Published:19 Jul 2005
    Low

    CVE-2005-2303

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1218. Reason: This candidate is a duplicate of CVE-2005-1218. Notes: All CVE users should reference CVE-2005-1218 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Tom Ferris
    Published:19 Jul 2005
    4.6
    Medium

    CVE-2005-2297

    Last Modified: 9 Mar 2011

    Stack-based buffer overflow in TreeAction.do in Sybase EAServer 4.2.5 through 5.2 allows remote authenticated users to execute arbitrary code via a large javascript parameter.

    Source:Metasploit
    Published:19 Jul 2005
    5
    Medium

    CVE-2005-2295

    Last Modified: 16 Apr 2026

    NetPanzer 0.8 and earlier allows remote attackers to cause a denial of service (infinite loop) via a packet with a zero datablock size.

    Source:Luigi Auriemma
    Published:17 Jul 2005
    5
    Medium

    CVE-2005-2287

    Last Modified: 27 Oct 2016

    SoftiaCom wMailServer 1.0 and 2.0 allows remote attackers to cause a denial of service (application crash) via a large TCP packet with a leading space, possibly triggering a buffer overflow.

    Source:Kozan
    Published:17 Jul 2005
    7.2
    High

    CVE-2005-2278

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in the IMAP daemon (imapd) in MailEnable Professional 1.54 allows remote authenticated users to execute arbitrary code via the status command with a long mailbox name.

    Source:Metasploit
    Published:17 Jul 2005
    10
    Critical

    CVE-2005-2277

    Last Modified: 5 Jun 2013

    Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename argument of a PUT command.

    Source:Kevin Finisterre
    Published:15 Jul 2005
    4.3
    Medium

    CVE-2005-2276

    Last Modified: 7 Jun 2013

    Cross-site scripting (XSS) vulnerability in Novell Groupwise WebAccess 6.5 before July 11, 2005 allows remote attackers to inject arbitrary web script or HTML via an e-mail message with an encoded javascript URI (e.g. "j&#X41vascript" in an IMG tag.

    Source:Francisco Amato
    Published:26 Jul 2005
    5
    Medium

    CVE-2005-2265

    Last Modified: 6 Mar 2011

    Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 allows remote attackers to cause a denial of service (access violation and crash), and possibly execute arbitrary code, by calling InstallVersion.compareTo with an object instead of a string.

    Source:Metasploit
    Published:12 Jul 2005
    5.1
    Medium

    CVE-2005-2262

    Last Modified: 16 Apr 2026

    Firefox 1.0.3 and 1.0.4, and Netscape 8.0.2, allows remote attackers to execute arbitrary code by tricking the user into using the "Set As Wallpaper" (in Firefox) or "Set as Background" (in Netscape) context menu on an image URL that is really a javascript: URL with an eval statement, aka "Firewalling."

    Source:Michael Krax
    Published:12 Jul 2005
    5
    Medium

    CVE-2005-2256

    Last Modified: 6 Jan 2017

    Encoded directory traversal vulnerability in phpPgAdmin 3.1 to 3.5.3 allows remote attackers to access arbitrary files via "%2e%2e%2f" (encoded dot dot) sequences in the formLanguage parameter.

    Published:13 Jul 2005
    7.5
    High

    CVE-2005-2250

    Last Modified: 16 Apr 2026

    Buffer overflow in Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary code via a long filename in an OBEX file share.

    Source:Kevin Finisterre
    Published:13 Jul 2005
    7.5
    High

    CVE-2005-2246

    Last Modified: 30 Sept 2016

    Multiple PHP remote file inclusion vulnerabilities in iPhotoAlbum 1.1 allow remote attackers to execute arbitrary code via the (1) doc_path parameter to getpage.php or (2) set_menu parameter to lib/static/header.php.

    Source:GoLd_M
    Published:12 Jul 2005
    5
    Medium

    CVE-2005-2242

    Last Modified: 5 Jun 2013

    Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 allows remote attackers to cause a denial of service (memory consumption and restart) via crafted packets to (1) the CTI Manager (ctimgr.exe) or (2) the CallManager (ccm.exe).

    Source:Jeff Fay
    Published:12 Jul 2005
    5
    Medium

    CVE-2005-2239

    Last Modified: 4 Jun 2013

    oftpd 0.3.7 allows remote attackers to cause a denial of service via a USER command with a large number of null (\0) characters.

    Published:12 Jul 2005
    7.2
    High

    CVE-2005-2236

    Last Modified: 16 Apr 2026

    Format string vulnerability in the paginit command in IBM AIX 5.3, and possibly other versions, might allow local users to execute arbitrary code via format strings in command line arguments.

    Source:intropy
    Published:12 Jul 2005
    4.6
    Medium

    CVE-2005-2232

    Last Modified: 16 Apr 2026

    Buffer overflow in invscout in IBM AIX 5.1.0 through 5.3.0 might allow local users to execute arbitrary code via a long command line argument.

    Source:intropy
    Published:12 Jul 2005
    7.5
    High

    CVE-2005-2229

    Last Modified: 25 May 2016

    Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.

    Source:LazyCrs
    Published:12 Jul 2005
    4.6
    Medium

    CVE-2005-2219

    Last Modified: 16 Apr 2026

    Hosting Controller 6.1 Hotfix 2.1 allows remote authenticated users to perform unauthorized actions, such as modifying the credit limit, via a direct request to AccountActions.asp and modifying the CreditLimit parameter in an UpdateCreditLimit action.

    Source:Soroush Dalili
    Published:12 Jul 2005
    7.5
    High

    CVE-2005-2210

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in Internet Download Manager 4.05 allows remote attackers to execute arbitrary code via a long URL.

    Source:c0d3r
    Published:11 Jul 2005
    5
    Medium

    CVE-2005-2208

    Last Modified: 16 Apr 2026

    PrivaShare 1.1b allows remote attackers to cause a denial of service (crash) via a malformed message.

    Source:basher13
    Published:11 Jul 2005
    7.5
    High

    CVE-2005-2199

    Last Modified: 1 Jun 2013

    PHP remote file inclusion vulnerability in inc/functions.inc.php in PPA web photo gallery 0.5.6 allows remote attackers to execute arbitrary code via the config[ppa_root_path] variable.

    Source:Dedi Dwianto
    Published:11 Jul 2005
    5
    Medium

    CVE-2005-2192

    Last Modified: 25 May 2016

    SimplePHPBlog 0.4.0 stores password hashes in config/password.txt with insufficient access control, which allows remote attackers to obtain passwords via a brute force attack.

    Source:Kenneth Belva
    Published:10 Jul 2005
    6.4
    Medium

    CVE-2005-2176

    Last Modified: 5 Jun 2013

    Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.

    Published:9 Jul 2005
    5
    Medium

    CVE-2005-2175

    Last Modified: 4 Jun 2013

    The web interface for Lotus Notes mail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies.

    Published:9 Jul 2005
    4.3
    Medium

    CVE-2005-2163

    Last Modified: 4 Jun 2013

    Cross-site scripting (XSS) vulnerability in index.php in AutoIndex PHP Script 1.5.2 allows remote attackers to inject arbitrary web script or HTML via the search parameter.

    Source:mozako
    Published:6 Jul 2005
    5
    Medium

    CVE-2005-2162

    Last Modified: 4 Jun 2013

    PHP remote file inclusion vulnerability in form.inc.php3 in MyGuestbook 0.6.1 allows remote attackers to execute arbitrary PHP code via the lang parameter.

    Source:SoulBlack Group
    Published:6 Jul 2005
    5
    Medium

    CVE-2005-2157

    Last Modified: 16 Apr 2026

    PHP remote file inclusion vulnerability in survey.inc.php for nabopoll 1.2 allows remote attackers to execute arbitrary PHP code via the path parameter.

    Source:Cr@zy_King
    Published:6 Jul 2005
    7.5
    High

    CVE-2005-2155

    Last Modified: 4 Jun 2013

    PHP remote file inclusion vulnerability in EasyPHPCalendar 6.1.5 and earlier allows remote attackers to execute arbitrary code via the serverPath parameter.

    Source:Albania Security Clan
    Published:6 Jul 2005
    7.5
    High

    CVE-2005-2154

    Last Modified: 3 Jun 2013

    PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote attackers to include and possibly execute arbitrary local files via the inc parameter.

    Source:edisan & foster
    Published:6 Jul 2005
    5
    Medium

    CVE-2005-2141

    Last Modified: 16 Apr 2026

    TCP Chat 1.0 allows remote attackers to cause a denial of service (crash) via a long string to the chat service, possibly triggering a buffer overflow.

    Source:basher13
    Published:5 Jul 2005
    5
    Medium

    CVE-2005-2140

    Last Modified: 3 Jun 2013

    Directory traversal vulnerability in default.asp for FSboard 2.0 allows remote attackers to read arbitrary files via ".." sequences in the filename parameter.

    Source:ActualMInd
    Published:5 Jul 2005
    7.5
    High

    CVE-2005-2127

    Last Modified: 13 Jun 2013

    Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for use within Internet Explorer, as originally demonstrated using the (1) DDS Library Shape Control (Msdds.dll) COM object, and other objects including (2) Blnmgrps.dll, (3) Ciodm.dll, (4) Comsvcs.dll, (5) Danim.dll, (6) Htmlmarq.ocx, (7) Mdt2dd.dll (as demonstrated using a heap corruption attack with uninitialized memory), (8) Mdt2qd.dll, (9) Mpg4ds32.ax, (10) Msadds32.ax, (11) Msb1esen.dll, (12) Msb1fren.dll, (13) Msb1geen.dll, (14) Msdtctm.dll, (15) Mshtml.dll, (16) Msoeacct.dll, (17) Msosvfbr.dll, (18) Mswcrun.dll, (19) Netshell.dll, (20) Ole2disp.dll, (21) Outllib.dll, (22) Psisdecd.dll, (23) Qdvd.dll, (24) Repodbc.dll, (25) Shdocvw.dll, (26) Shell32.dll, (27) Soa.dll, (28) Srchui.dll, (29) Stobject.dll, (30) Vdt70.dll, (31) Vmhelper.dll, and (32) Wbemads.dll, aka a variant of the "COM Object Instantiation Memory Corruption vulnerability."

    Source:anonymous
    Published:19 Aug 2005
    7.6
    High

    CVE-2005-2124

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to "An unchecked buffer" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a crafted Windows Metafile (WMF) format image, aka "Windows Metafile Vulnerability."

    Source:Winny Thomas
    Published:29 Nov 2005
    7.5
    High

    CVE-2005-2123

    Last Modified: 16 Apr 2026

    Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allow remote attackers to execute arbitrary code via crafted Windows Metafile (WMF) and Enhanced Metafile (EMF) format images that lead to heap-based buffer overflows, as demonstrated using MRBP16::bCheckRecord.

    Source:Winny Thomas
    Published:29 Nov 2005
    6.5
    Medium

    CVE-2005-2120

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the Plug and Play (PnP) service (UMPNPMGR.DLL) in Microsoft Windows 2000 SP4, and XP SP1 and SP2, allows remote or local authenticated attackers to execute arbitrary code via a large number of "\" (backslash) characters in a registry key name, which triggers the overflow in a wsprintfW function call.

    Source:anonymous
    Published:13 Oct 2005
    5
    Medium

    CVE-2005-2119

    Last Modified: 16 Apr 2026

    The MIDL_user_allocate function in the Microsoft Distributed Transaction Coordinator (MSDTC) proxy (MSDTCPRX.DLL) allocates a 4K page of memory regardless of the required size, which allows attackers to overwrite arbitrary memory locations using an incorrect size value that is provided to the NdrAllocate function, which writes management data to memory outside of the allocated buffer.

    Source:darkeagle
    Published:11 Oct 2005
    Low

    CVE-2005-2116

    Last Modified: 27 Oct 2016

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1921. Reason: This candidate is a duplicate of CVE-2005-1921. Notes: All CVE users should reference CVE-2005-1921 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:ilo--
    Published:1 Jul 2005
    7.5
    High

    CVE-2005-2113

    Last Modified: 20 May 2016

    SQL injection vulnerability in the loginUser function in the XMLRPC server in XOOPS 2.0.11 and earlier allows remote attackers to execute arbitrary SQL commands and bypass authentication via crafted values in an XML file, as demonstrated using the blogger.getPost method.

    Source:RusH
    Published:1 Jul 2005
    4.3
    Medium

    CVE-2005-2112

    Last Modified: 19 Jan 2018

    Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.0.11 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) order parameter to edit.php or (2) cid parameter to comment_edit.php.

    Source:GulfTech Security
    Published:1 Jul 2005
    7.5
    High

    CVE-2005-2108

    Last Modified: 5 Jan 2018

    SQL injection vulnerability in XMLRPC server in WordPress 1.5.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via input that is not filtered in the HTTP_RAW_POST_DATA variable, which stores the data in an XML file.

    Source:GulfTech Security
    Published:1 Jul 2005
    5
    Medium

    CVE-2005-2106

    Last Modified: 25 May 2016

    Unknown vulnerability in Drupal 4.5.0 through 4.5.3, 4.6.0, and 4.6.1 allows remote attackers to execute arbitrary PHP code via a public comment or posting.

    Source:dab
    Published:1 Jul 2005
    9.8
    Critical

    CVE-2005-2103

    Last Modified: 13 Jun 2013

    Buffer overflow in the AIM and ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an away message with a large number of AIM substitution strings, such as %t or %n.

    Source:Brandon Perry
    Published:8 Aug 2005
    4.3
    Medium

    CVE-2005-2095

    Last Modified: 19 Jan 2018

    options_identities.php in SquirrelMail 1.4.4 and earlier uses the extract function to process the $_POST variable, which allows remote attackers to modify or read the preferences of other users, conduct cross-site scripting XSS) attacks, and write arbitrary files.

    Source:GulfTech Security
    Published:13 Jul 2005
    5
    Medium

    CVE-2005-2087

    Last Modified: 22 Nov 2017

    Internet Explorer 5.01 SP4 up to 6 on various Windows operating systems, including IE 6.0.2900.2180 on Windows XP, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not ActiveX controls, as demonstrated using the JVIEW Profiler (Javaprxy.dll). NOTE: the researcher says that the vendor could not reproduce this problem.

    Source:k-otik
    Published:30 Jun 2005
    7.5
    High

    CVE-2005-2086

    Last Modified: 6 Mar 2011

    PHP remote file inclusion vulnerability in viewtopic.php in phpBB 2.0.15 and earlier allows remote attackers to execute arbitrary PHP code.

    Source:Metasploit
    Published:30 Jun 2005