Back

CVE-2005-3062

PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote attackers to execute arbitrary PHP code via the mode parameter.

Published: Sep 27, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
alstrasoft e-friends 4.0

GitHub Security Advisory GHSA-v8pg-v9x7-3572

PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.68%

Top 25% most likely to be exploited

Threat Score 30.5 / 100

Data Sources

NVD EPSS GitHub