Vulnerabilities > CVE-2005-2155 - Unspecified vulnerability in Easyphpcalendar 6.1.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
PHP remote file inclusion vulnerability in EasyPHPCalendar 6.1.5 and earlier allows remote attackers to execute arbitrary code via the serverPath parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description EasyPHPCalendar 6.1.5/6.2.x setupSQL.php serverPath Parameter Remote File Inclusion. CVE-2005-2155. Webapps exploit for php platform id EDB-ID:25932 last seen 2016-02-03 modified 2005-07-04 published 2005-07-04 reporter Albania Security Clan source https://www.exploit-db.com/download/25932/ title EasyPHPCalendar 6.1.5/6.2.x setupSQL.php serverPath Parameter Remote File Inclusion description EasyPHPCalendar 6.1.5/6.2.x header.inc.php serverPath Parameter Remote File Inclusion. CVE-2005-2155. Webapps exploit for php platform id EDB-ID:25930 last seen 2016-02-03 modified 2005-07-04 published 2005-07-04 reporter Albania Security Clan source https://www.exploit-db.com/download/25930/ title EasyPHPCalendar 6.1.5/6.2.x header.inc.php serverPath Parameter Remote File Inclusion description EasyPHPCalendar 6.1.5/6.2.x datePicker.php serverPath Parameter Remote File Inclusion. CVE-2005-2155. Webapps exploit for php platform id EDB-ID:25931 last seen 2016-02-03 modified 2005-07-04 published 2005-07-04 reporter Albania Security Clan source https://www.exploit-db.com/download/25931/ title EasyPHPCalendar 6.1.5/6.2.x datePicker.php serverPath Parameter Remote File Inclusion description EasyPHPCalendar 6.1.5/6.2.x calendar.php serverPath Parameter Remote File Inclusion. CVE-2005-2155. Webapps exploit for php platform id EDB-ID:25928 last seen 2016-02-03 modified 2005-07-04 published 2005-07-04 reporter Albania Security Clan source https://www.exploit-db.com/download/25928/ title EasyPHPCalendar 6.1.5/6.2.x calendar.php serverPath Parameter Remote File Inclusion description EasyPHPCalendar 6.1.5/6.2.x popup.php serverPath Parameter Remote File Inclusion. CVE-2005-2155. Webapps exploit for php platform id EDB-ID:25929 last seen 2016-02-03 modified 2005-07-04 published 2005-07-04 reporter Albania Security Clan source https://www.exploit-db.com/download/25929/ title EasyPHPCalendar 6.1.5/6.2.x popup.php serverPath Parameter Remote File Inclusion
Nessus
NASL family | CGI abuses |
NASL id | EASYPHPCALENDAR_SERVERPATH_REMOTE_INCLUDES.NASL |
description | The remote host is running EasyPHPCalendar, a web-based calendar system written in PHP. The installed version of EasyPHPCalendar allows remote attackers to control the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 18617 |
published | 2005-07-05 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/18617 |
title | EasyPHPCalendar Multiple Script serverPath Parameter Remote File Inclusion |