Vulnerabilities > CVE-2005-2787 - Unspecified vulnerability in Alexander Palmo Simple PHP Blog 0.4.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
comment_delete_cgi.php in Simple PHP Blog allows remote attackers to delete arbitrary files via the comment parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Simple PHP Blog <= 0.4.0 Multiple Remote Exploits. CVE-2005-2192,CVE-2005-2733,CVE-2005-2787. Webapps exploit for php platform |
id | EDB-ID:1191 |
last seen | 2016-01-31 |
modified | 2005-09-01 |
published | 2005-09-01 |
reporter | Kenneth Belva |
source | https://www.exploit-db.com/download/1191/ |
title | Simple PHP Blog <= 0.4.0 - Multiple Remote Exploits |
Nessus
NASL family | CGI abuses |
NASL id | SPHPBLOG_040.NASL |
description | The version of Simple PHP Blog installed on the remote host allows authenticated attackers to upload files containing arbitrary code to be executed with the privileges of the web server userid. In addition, it likely lets anyone retrieve its configuration file as well as the user list and to delete arbitrary files subject to the privileges of the web server user id. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19516 |
published | 2005-08-27 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/19516 |
title | Simple PHP Blog <= 0.4.0 Multiple Vulnerabilities |
code |
|
References
- http://marc.info/?l=bugtraq&m=112534658510762&w=2
- http://marc.info/?l=bugtraq&m=112534658510762&w=2
- http://secunia.com/advisories/16616/
- http://secunia.com/advisories/16616/
- http://www.ftusecurity.com/pub/sphpblog_vulns
- http://www.ftusecurity.com/pub/sphpblog_vulns
- http://www.securityfocus.com/bid/14681
- http://www.securityfocus.com/bid/14681
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22096
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22096