CVE-2005-0828

highlight.php in (1) RUNCMS 1.1A, (2) CIAMOS 0.9.2 RC1, (3) e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allows remote attackers to read arbitrary PHP files by specifying the pathname in the file parameter, as demonstrated by reading database configuration information from mainfile.php.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:runcms:runcms:1.1a:*:*:*:*:*:*:*
cpe:2.3:a:ciamos:ciamos:0.9.2_rc1:*:*:*:*:*:*:*
cpe:2.3:a:e-xoops:e-xoops:1.05r3:*:*:*:*:*:*:*

Information

Published : 2005-05-01 21:00

Updated : 2017-07-10 18:32


NVD link : CVE-2005-0828

Mitre link : CVE-2005-0828


JSON object : View

Advertisement

dedicated server usa

Products Affected

ciamos

  • ciamos

e-xoops

  • e-xoops

runcms

  • runcms