CVE-2005-2559
Last modified
CVE-2005-2559 is a vulnerability of currently unknown severity. doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwrite files via (1) shell metacharacters in the eping_count parameter or (2) restricted shell metacharacters such as ">" and "&" in the eping_host parameter, which is not handled by the validation function.. EPSS estimates a 2.26% chance of exploitation in the next 30 days.
Description
doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwrite files via (1) shell metacharacters in the eping_count parameter or (2) restricted shell metacharacters such as ">" and "&" in the eping_host parameter, which is not handled by the validation function.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| E107 | E107 | All versions |
References
- http://e107plugins.co.uk/news.phpPatch, URL Repurposed
- http://e107plugins.co.uk/news.phpPatch, URL Repurposed
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-2559?
How severe is CVE-2005-2559?
How do I fix CVE-2005-2559?
Are you affected by CVE-2005-2559?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
