7.5
CVSSv2

CVE-2005-1821

Published: 01/06/2005 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in pdl_header.inc.php in PowerDownload 3.0.2 and 3.0.3 allows remote malicious users to execute arbitrary PHP code via the incdir parameter to downloads.php.

Vulnerable Product Search on Vulmon Subscribe to Product

powerscripts.org powerdownload 3.0.2

powerscripts.org powerdownload 3.0.3

Exploits

source: wwwsecurityfocuscom/bid/13822/info PowerDownload is prone to a remote file include vulnerability This issue is due to a failure in the application to properly sanitize user-supplied input An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web serve ...