Back

CVE-2005-0860

PHP remote file inclusion vulnerability in TRG News Script 3.0 allows remote attackers to execute arbitrary PHP code via the dir parameter to (1) article.php, (2) authorall.php, (3) comment.php, (4) display.php, or (5) displayall.php.

Published: May 2, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
the_rusted_gate trg_news 3.0

GitHub Security Advisory GHSA-85v2-7m37-mj5w

PHP remote file inclusion vulnerability in TRG News Script 3.0 allows remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.51%

Top 17% most likely to be exploited

Threat Score 30.8 / 100

Data Sources

NVD EPSS GitHub