Back
CVE-2005-1681
PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via a URL in the include_location parameter to index.php.
Published: May 20, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| bugada_andrea | php_advanced_transfer_manager | 1.20 |
| bugada_andrea | php_advanced_transfer_manager | 1.21 |
GitHub Security Advisory GHSA-73jm-pf4r-h37f
PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier...
References (8)
- http://marc.info/?l=bugtraq&m=111653168810937&w=2
- http://secunia.com/advisories/15420
- http://securitytracker.com/id?1014008
- http://www.osvdb.org/16692
- http://marc.info/?l=bugtraq&m=111653168810937&w=2
- http://secunia.com/advisories/15420
- http://securitytracker.com/id?1014008
- http://www.osvdb.org/16692
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
6.56%
Top 7% most likely to be exploited
Threat Score
32 / 100
Data Sources
NVD
EPSS
GitHub