CVE Vulnerabilities

CVE-2005-2951

Published: Sep 16, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via .. sequences and %00 (trailing null byte) characters in the l parameter, which is used in an include_once statement.

Affected Software

NameVendorStart VersionEnd Version
AzdgdatingAzerbaijan_development_group2.1.3 (including)2.1.3 (including)

References