Back
CVE-2005-0680
PHP remote file inclusion vulnerability in download_center_lite.inc.php for Download Center Lite 1.6 allows remote attackers to execute arbitrary PHP code by modifying the script_root parameter to reference a URL on a remote web server that contains the code.
Published: Mar 7, 2005
Modified: Jun 16, 2026
CVSS Metrics
GitHub Security Advisory GHSA-7h8w-wpmq-rqgp
PHP remote file inclusion vulnerability in download_center_lite.inc.php for Download Center Lite...
References (8)
- http://marc.info/?l=bugtraq&m=110996056601719&w=2
- http://secunia.com/advisories/14513 Patch, Vendor Advisory
- http://www.stadtaus.com/forum/p-5895.html
- http://www.stadtaus.com/forum/t-1579.html Patch, Vendor Advisory
- http://marc.info/?l=bugtraq&m=110996056601719&w=2
- http://secunia.com/advisories/14513 Patch, Vendor Advisory
- http://www.stadtaus.com/forum/p-5895.html
- http://www.stadtaus.com/forum/t-1579.html Patch, Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
2.59%
Top 16% most likely to be exploited
Threat Score
30.8 / 100
Data Sources
NVD
EPSS
GitHub