Vulnerabilities > CVE-2005-0613 - Unspecified vulnerability in Fckeditor 2.0Rc2

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
fckeditor
nessus
exploit available

Summary

Unknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote attackers to upload arbitrary files.

Vulnerable Configurations

Part Description Count
Application
Fckeditor
1

Exploit-Db

  • descriptionNuke ET. CVE-2005-0613,CVE-2008-6178. Webapps exploit for php platform
    idEDB-ID:6783
    last seen2016-02-01
    modified2008-10-18
    published2008-10-18
    reporterEgiX
    sourcehttps://www.exploit-db.com/download/6783/
    titleNuke ET <= 3.4 - fckeditor Remote Arbitrary File Upload Exploit
  • descriptionInoutMailingListManager <= 3.1 Remote Command Execution Exploit. CVE-2005-0613,CVE-2006-0658,CVE-2007-2002,CVE-2007-2003,CVE-2007-2004. Webapps exploit fo...
    fileexploits/php/webapps/3702.php
    idEDB-ID:3702
    last seen2016-01-31
    modified2007-04-10
    platformphp
    port
    published2007-04-10
    reporterBlackHawk
    sourcehttps://www.exploit-db.com/download/3702/
    titleInoutMailingListManager <= 3.1 - Remote Command Execution Exploit
    typewebapps

Nessus

NASL familyCGI abuses
NASL idPHP_NUKE_FCKEDITOR_IMAGE_UPLOADS.NASL
descriptionThe remote host is running a version of the FCKeditor add-on for PHP-Nuke that allows a remote attacker to upload arbitrary files and run them in the context of the web server user.
last seen2020-06-01
modified2020-06-02
plugin id17239
published2005-03-01
reporterThis script is Copyright (C) 2005-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/17239
titleFCKeditor for PHP-Nuke Arbitrary File Upload