Back

CVE-2005-0680

PHP remote file inclusion vulnerability in download_center_lite.inc.php for Download Center Lite 1.6 allows remote attackers to execute arbitrary PHP code by modifying the script_root parameter to reference a URL on a remote web server that contains the code.

Published: Mar 7, 2005 Modified: Jun 16, 2026

CVSS Metrics

GitHub Security Advisory GHSA-7h8w-wpmq-rqgp

PHP remote file inclusion vulnerability in download_center_lite.inc.php for Download Center Lite...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.59%

Top 16% most likely to be exploited

Threat Score 30.8 / 100

Data Sources

NVD EPSS GitHub