PHP file include vulnerability in download.php in PHPSimplicity Simplicity oF Upload before 1.3.1 allows remote attackers to include arbitrary local and remote files via the language parameter and a terminating null ("%00") characters.
References
Configurations
History
20 Nov 2024, 23:59
Type | Values Removed | Values Added |
---|---|---|
References | () http://rgod.altervista.org/simply.html - Exploit | |
References | () http://secunia.com/advisories/16273 - | |
References | () http://securitytracker.com/id?1014591 - Exploit | |
References | () http://www.phpsimplicity.com/scripts.php?id=3 - Patch | |
References | () http://www.securityfocus.com/bid/14424 - Patch |
Information
Published : 2005-08-17 04:00
Updated : 2024-11-20 23:59
NVD link : CVE-2005-2607
Mitre link : CVE-2005-2607
CVE.ORG link : CVE-2005-2607
JSON object : View
Products Affected
phpsimplicity
- simplicity_of_upload
CWE