Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-3017

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2005-3017
Last Modified 05 Sep 2008 04:53:14
Published 21 Sep 2005 05:03:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2005-3017

Summary

PHP file inclusion vulnerability in index.php in Content2Web 1.0.1 allows remote attackers to include arbitrary files via the show parameter, which can lead to resultant errors such as path disclosure, SQL error messages, and cross-site scripting (XSS).

Vulnerable Systems

Application

  • Content2web 1.0.1


References

SECTRACK - 1014900


Last Updated: 27 May 2016 10:40:42