Vulnerabilities > CVE-2005-0854 - Remote vulnerability in Betaparticle Blog 2.0/3.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
betaparticle blog (bp blog), posisbly before version 4, allows remote attackers to bypass authentication and (1) upload files via a direct request to upload.asp or (2) delete files via a direct request to myFiles.asp.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | betaparticle blog 2.0/3.0 myFiles.asp Unauthenticated File Manipulation. CVE-2005-0854. Webapps exploit for asp platform |
id | EDB-ID:25254 |
last seen | 2016-02-03 |
modified | 2005-03-21 |
published | 2005-03-21 |
reporter | farhad koosha |
source | https://www.exploit-db.com/download/25254/ |
title | betaparticle blog 2.0/3.0 myFiles.asp Unauthenticated File Manipulation |