Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-2951

Опубликовано: 16 сент. 2005
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via ".." sequences and "%00" (trailing null byte) characters in the l parameter, which is used in an include_once statement.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:azerbaijan_development_group:azdgdating:2.1.3:*:lite:*:*:*:*:*

EPSS

Процентиль: 92%
0.09007
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via ".." sequences and "%00" (trailing null byte) characters in the l parameter, which is used in an include_once statement.

EPSS

Процентиль: 92%
0.09007
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other