CVE Vulnerabilities

CVE-2005-0800

Published: May 02, 2005 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

PHP remote file inclusion vulnerability in install.php in mcNews 1.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the l parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2005-0720.

Affected Software

Name Vendor Start Version End Version
Mcnews Mcnews 1.0 (including) 1.0 (including)
Mcnews Mcnews 1.1 (including) 1.1 (including)
Mcnews Mcnews 1.1a (including) 1.1a (including)
Mcnews Mcnews 1.2 (including) 1.2 (including)
Mcnews Mcnews 1.3 (including) 1.3 (including)

References