{"api_version":"1","generated_at":"2026-07-24T17:16:44+00:00","cve":"CVE-2005-2890","urls":{"html":"https://cve.report/CVE-2005-2890","api":"https://cve.report/api/cve/CVE-2005-2890.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-2890","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-2890"},"summary":{"title":"CVE-2005-2890","description":"SecureOL VE2 1.05.1008 does not properly restrict public access to physical memory, which allows local users to bypass intended restrictions and gain access to the secured environment via direct access to the PhysicalMemory device.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-09-14 20:03:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://marc.info/?l=bugtraq&m=112610983428771&w=2","name":"http://marc.info/?l=bugtraq&m=112610983428771&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Vulnerability In SecureOL VE2 v1.05.1008' - MARC","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/14768","name":"http://www.securityfocus.com/bid/14768","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"SecureOL VE2 Physical Memory Secured Environment Access Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/16739/","name":"http://secunia.com/advisories/16739/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Secunia - Advisories - SecureOL VE2 Security Feature Bypass Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://cybermessageboard.xeran.com/secureol/viewtopic.php?t=26","name":"http://cybermessageboard.xeran.com/secureol/viewtopic.php?t=26","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"SecureOL Support Forum :: View topic - version 105.1008 Vulnerability submited by Joe Stewart","mime":"text/html","httpstatus":"403","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22205","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22205","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-2890","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-2890","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"2890","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"secureol","cpe5":"ve2","cpe6":"1.05.1008","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T22:53:29.526Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"14768","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/14768"},{"name":"ve2-memory-bypass-security(22205)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22205"},{"name":"16739","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/16739/"},{"name":"20050907 Vulnerability In SecureOL VE2 v1.05.1008","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=112610983428771&w=2"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://cybermessageboard.xeran.com/secureol/viewtopic.php?t=26"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-09-07T00:00:00.000Z","descriptions":[{"lang":"en","value":"SecureOL VE2 1.05.1008 does not properly restrict public access to physical memory, which allows local users to bypass intended restrictions and gain access to the secured environment via direct access to the PhysicalMemory device."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"14768","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/14768"},{"name":"ve2-memory-bypass-security(22205)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22205"},{"name":"16739","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/16739/"},{"name":"20050907 Vulnerability In SecureOL VE2 v1.05.1008","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=112610983428771&w=2"},{"tags":["x_refsource_CONFIRM"],"url":"http://cybermessageboard.xeran.com/secureol/viewtopic.php?t=26"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-2890","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"SecureOL VE2 1.05.1008 does not properly restrict public access to physical memory, which allows local users to bypass intended restrictions and gain access to the secured environment via direct access to the PhysicalMemory device."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"14768","refsource":"BID","url":"http://www.securityfocus.com/bid/14768"},{"name":"ve2-memory-bypass-security(22205)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22205"},{"name":"16739","refsource":"SECUNIA","url":"http://secunia.com/advisories/16739/"},{"name":"20050907 Vulnerability In SecureOL VE2 v1.05.1008","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=112610983428771&w=2"},{"name":"http://cybermessageboard.xeran.com/secureol/viewtopic.php?t=26","refsource":"CONFIRM","url":"http://cybermessageboard.xeran.com/secureol/viewtopic.php?t=26"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-2890","datePublished":"2005-09-14T04:00:00.000Z","dateReserved":"2005-09-14T00:00:00.000Z","dateUpdated":"2024-08-07T22:53:29.526Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-09-14 20:03:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:secureol:ve2:1.05.1008:*:*:*:*:*:*:*","matchCriteriaId":"652CD56D-686B-4250-B59F-0A2CE301E3BF"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"2890","Ordinal":"1","Title":"CVE-2005-2890","CVE":"CVE-2005-2890","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"2890","Ordinal":"1","NoteData":"SecureOL VE2 1.05.1008 does not properly restrict public access to physical memory, which allows local users to bypass intended restrictions and gain access to the secured environment via direct access to the PhysicalMemory device.","Type":"Description","Title":"CVE-2005-2890"},{"CveYear":"2005","CveId":"2890","Ordinal":"2","NoteData":"2005-09-14","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"2890","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}