Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-3048
Description:Directory traversal vulnerability in index.php in PhpMyFaq 1.5.1 allows remote attackers to read arbitrary files or include arbitrary PHP files via a .. (dot dot) in the LANGCODE parameter, which also allows direct code injection via the User Agent field in a request packet, which can be activated by using LANGCODE to reference the user tracking data file.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-3048
Bugtraq: 20050922 PhpMyFAQ 1.5.1 multiple vulnerabilities (Google Search)
http://marc.info/?l=bugtraq&m=112749230124091&w=2
http://rgod.altervista.org/phpmyfuck151.html
http://www.osvdb.org/19672




© 1998-2025 E-Soft Inc. All rights reserved.