Back

CVE-2005-3835

PHP remote file inclusion vulnerability in support/index.php in DeskLance 2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the main parameter.

Published: Nov 26, 2005 Modified: Jun 16, 2026
CWE-94

CVSS Metrics

Affected Products (1)

Vendor Product Version
desklance desklance *

GitHub Security Advisory GHSA-qc42-vwhq-67xp

PHP remote file inclusion vulnerability in support/index.php in DeskLance 2.3 and earlier allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.68%

Top 25% most likely to be exploited

Threat Score 30.5 / 100

Data Sources

NVD EPSS GitHub