CVE-2005-4573

PHP remote file include vulnerability in plog-admin-functions.php in Plogger Beta 2 allows remote attackers to execute arbitrary code via a URL in the config[basedir] parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:plogger:plogger:-:beta2:*:*:*:*:*:*

History

21 Nov 2024, 00:04

Type Values Removed Values Added
References () http://freeconnects.webcindario.com/index.php?option=com_content&task=view&id=41&Itemid=1 - () http://freeconnects.webcindario.com/index.php?option=com_content&task=view&id=41&Itemid=1 -
References () http://masendav.com/~duke/PloggerChanges_files/FileComparisonReport1.html - () http://masendav.com/~duke/PloggerChanges_files/FileComparisonReport1.html -
References () http://securityreason.com/securityalert/273 - () http://securityreason.com/securityalert/273 -
References () http://securitytracker.com/id?1015380 - Exploit, Patch () http://securitytracker.com/id?1015380 - Exploit, Patch
References () http://www.osvdb.org/22395 - () http://www.osvdb.org/22395 -
References () http://www.plogger.org/two-point-one/ - Patch () http://www.plogger.org/two-point-one/ - Patch
References () http://www.securityfocus.com/bid/15992 - Exploit, Patch () http://www.securityfocus.com/bid/15992 - Exploit, Patch
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/23861 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/23861 -

Information

Published : 2005-12-29 11:03

Updated : 2024-11-21 00:04


NVD link : CVE-2005-4573

Mitre link : CVE-2005-4573

CVE.ORG link : CVE-2005-4573


JSON object : View

Products Affected

plogger

  • plogger
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')