CVE Vulnerabilities

CVE-2005-2251

Published: Jul 13, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PHP remote file inclusion vulnerability in secure.php in PHPSecurePages (phpSP) 0.28beta and earlier allows remote attackers to execute arbitrary code via the cfgProgDir parameter, a variant of CVE-2001-1468.

Affected Software

NameVendorStart VersionEnd Version
PhpsecurepagesSecure_reality0.11_beta (including)0.11_beta (including)
PhpsecurepagesSecure_reality0.12_beta (including)0.12_beta (including)
PhpsecurepagesSecure_reality0.13_beta (including)0.13_beta (including)
PhpsecurepagesSecure_reality0.14_beta (including)0.14_beta (including)
PhpsecurepagesSecure_reality0.15_beta (including)0.15_beta (including)
PhpsecurepagesSecure_reality0.16_beta (including)0.16_beta (including)
PhpsecurepagesSecure_reality0.17_beta (including)0.17_beta (including)
PhpsecurepagesSecure_reality0.18_beta (including)0.18_beta (including)
PhpsecurepagesSecure_reality0.19_beta (including)0.19_beta (including)
PhpsecurepagesSecure_reality0.20_beta (including)0.20_beta (including)
PhpsecurepagesSecure_reality0.21_beta (including)0.21_beta (including)
PhpsecurepagesSecure_reality0.22_beta (including)0.22_beta (including)
PhpsecurepagesSecure_reality0.23_beta (including)0.23_beta (including)
PhpsecurepagesSecure_reality0.24_beta (including)0.24_beta (including)
PhpsecurepagesSecure_reality0.25_beta (including)0.25_beta (including)
PhpsecurepagesSecure_reality0.26_beta (including)0.26_beta (including)
PhpsecurepagesSecure_reality0.27_beta (including)0.27_beta (including)
PhpsecurepagesSecure_reality0.28_beta (including)0.28_beta (including)

References