7.5
CVSSv2

CVE-2005-1820

Published: 01/06/2005 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

zboard.php in Zeroboard version 4.1pl2 to 4.1pl5 allows remote malicious users to execute arbitrary PHP code via improper quoting when using the preg_replace function.

Vulnerable Product Search on Vulmon Subscribe to Product

zeroboard zeroboard 4.1_pl5

zeroboard zeroboard 4.1_pl2

zeroboard zeroboard 4.1_pl4

zeroboard zeroboard 4.1_pl3

Exploits

/* * ---------------------------------------------------------------------------------- [+] Zeroboard preg_replace vulnerability Remote nobody shell exploit ---------------------------------------------------------------------------------- > by n0gada (n0gada@null2rootorg) [*] date : 2005/5/29 [*] the bug Original advisory: - pando ...