Vulnerabilities > CVE-2005-2892 - Unspecified vulnerability in Pblang 4.65
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Directory traversal vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) in the u parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description PBLang Local file include Vulnerability. CVE-2005-2892. Webapps exploit for php platform id EDB-ID:18590 last seen 2016-02-02 modified 2012-03-13 published 2012-03-13 reporter Number 7 source https://www.exploit-db.com/download/18590/ title PBLang Local file include Vulnerability description PBLang 4.65 Bulletin Board System SetCookie.PHP Directory Traversal Vulnerability. CVE-2005-2892. Webapps exploit for php platform id EDB-ID:26231 last seen 2016-02-03 modified 2005-09-07 published 2005-09-07 reporter rgod source https://www.exploit-db.com/download/26231/ title PBLang 4.65 Bulletin Board System SetCookie.PHP Directory Traversal Vulnerability
Nessus
NASL family | CGI abuses |
NASL id | PBLANG_MULT_FLAWS.NASL |
description | The remote host is running PBLang, a bulletin board system that uses flat files and is written in PHP. The version of PBLang installed on the remote suffers from several vulnerabilities, including remote code execution, information disclosure, cross-site scripting, and path disclosure. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19594 |
published | 2005-09-08 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/19594 |
title | PBLang 4.65 Multiple Vulnerabilities |
code |
|
References
- http://marc.info/?l=bugtraq&m=112611338417979&w=2
- http://marc.info/?l=bugtraq&m=112611338417979&w=2
- http://secunia.com/advisories/16711/
- http://secunia.com/advisories/16711/
- http://securitytracker.com/alerts/2005/Sep/1014861.html
- http://securitytracker.com/alerts/2005/Sep/1014861.html
- http://www.securityfocus.com/bid/14765
- http://www.securityfocus.com/bid/14765
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22185
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22185