5
CVSSv2

CVE-2005-1996

Published: 15/06/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

PHP remote file inclusion vulnerability in start.php in Bitrix Site Manager 4.0.x allows remote malicious users to execute arbitrary PHP code via the _SERVER[DOCUMENT_ROOT] parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

bitrix bitrix site manager 4.0.4

bitrix bitrix site manager 4.0.5

bitrix bitrix site manager 4.0.8

bitrix bitrix site manager 4.0.0

bitrix bitrix site manager 4.0.2

bitrix bitrix site manager 4.0.3

bitrix bitrix site manager 4.0.6

bitrix bitrix site manager 4.0.7