7.5
CVSSv2

CVE-2005-2616

Published: 17/08/2005 Updated: 08/03/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 770
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote malicious users to execute arbitrary code via the path parameter to (1) initialize.php, (2) customize.php, (3) form.php, or (4) index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

ezupload ezupload 2.2

Exploits

source: wwwsecurityfocuscom/bid/14534/info ezUpload is affected by multiple remote file include vulnerabilities These issues are due to a failure in the application to properly sanitize user-supplied input An attacker may leverage any of these issues to execute arbitrary server-side script code on an affected computer with the pr ...
source: wwwsecurityfocuscom/bid/14534/info ezUpload is affected by multiple remote file include vulnerabilities These issues are due to a failure in the application to properly sanitize user-supplied input An attacker may leverage any of these issues to execute arbitrary server-side script code on an affected computer with the privil ...
source: wwwsecurityfocuscom/bid/14534/info ezUpload is affected by multiple remote file include vulnerabilities These issues are due to a failure in the application to properly sanitize user-supplied input An attacker may leverage any of these issues to execute arbitrary server-side script code on an affected computer with the privileg ...
source: wwwsecurityfocuscom/bid/14534/info ezUpload is affected by multiple remote file include vulnerabilities These issues are due to a failure in the application to properly sanitize user-supplied input An attacker may leverage any of these issues to execute arbitrary server-side script code on an affected computer with the priv ...