CVE-2005-4287
published 2005-12-16CVE-2005-4287: PHP remote file include vulnerability in MarmaraWeb E-commerce allows remote attackers to execute arbitrary code via the page parameter to index.php.
PriorityP339high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
4.90%
91.0th percentile
PHP remote file include vulnerability in MarmaraWeb E-commerce allows remote attackers to execute arbitrary code via the page parameter to index.php.
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xrgc-r968-f934: Cross-site scripting (XSS) vulnerability in index
ghsa_unreviewed·2022-05-01·CVSS 7.5
CVE-2005-4288 [HIGH] GHSA-xrgc-r968-f934: Cross-site scripting (XSS) vulnerability in index
Cross-site scripting (XSS) vulnerability in index.php in MarmaraWeb E-commerce allows remote attackers to inject arbitrary web script or HTML via the page parameter to index.php. NOTE: this might be resultant from CVE-2005-4287.
GHSA
GHSA-6f22-6f94-wc44: PHP remote file include vulnerability in MarmaraWeb E-commerce allows remote attackers to execute arbitrary code via the page parameter to index
ghsa_unreviewed·2022-05-01
CVE-2005-4287 [HIGH] GHSA-6f22-6f94-wc44: PHP remote file include vulnerability in MarmaraWeb E-commerce allows remote attackers to execute arbitrary code via the page parameter to index
PHP remote file include vulnerability in MarmaraWeb E-commerce allows remote attackers to execute arbitrary code via the page parameter to index.php.
No detection rules found.
No writeups or analysis indexed.
http://securityreason.com/securityalert/263http://www.osvdb.org/21903http://www.securityfocus.com/archive/1/419587/100/0/threadedhttp://www.securityfocus.com/bid/15877http://securityreason.com/securityalert/263http://www.osvdb.org/21903http://www.securityfocus.com/archive/1/419587/100/0/threadedhttp://www.securityfocus.com/bid/15877
2005-12-16
Published