Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-2893

Direct static code injection vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via the username (u parameter), which is directly injected into a file that is later executed upon login.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 76.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2005-2893
  • Pblang » Pblang » Version: 4.65
    cpe:2.3:a:pblang:pblang:4.65


Contact Us

Shodan ® - All rights reserved