Vulnerabilities > CVE-2005-2413 - Unspecified vulnerability in Atomic Photo Album Atomic Photo Album
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN atomic-photo-album
nessus
Summary
PHP remote file inclusion vulnerability in apa_phpinclude.inc.php in Atomic Photo Album (APA) allows remote attackers to execute arbitrary PHP code via the apa_module_basedir parameter.
Vulnerable Configurations
Nessus
NASL family | CGI abuses |
NASL id | APA_MODULE_BASEDIR_FILE_INCLUDES.NASL |
description | The remote host is running Atomic Photo Album, a free, PHP-based photo gallery. The installed version of Atomic Photo Album allows remote attackers to control the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19299 |
published | 2005-07-25 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/19299 |
title | Atomic Photo Album apa_phpinclude.inc.php apa_module_basedir Parameter Remote File Inclusion |
code |
|
References
- http://marc.info/?l=bugtraq&m=112230428725189&w=2
- http://marc.info/?l=bugtraq&m=112230428725189&w=2
- http://secunia.com/advisories/16201
- http://secunia.com/advisories/16201
- http://securitytracker.com/id?1014569
- http://securitytracker.com/id?1014569
- http://www.osvdb.org/18265
- http://www.osvdb.org/18265
- http://www.securityfocus.com/bid/14368
- http://www.securityfocus.com/bid/14368
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21562
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21562