Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-1783

EPSS 0.46% · P64
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-1783

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
BookReview beta 1.0 allows remote attackers to obtain the path of the web server via certain parameters to search.htm, possibly due to a search[string] parameter with a missing value or an incorrect submit[type] value, which reveals the path in the resulting error message. NOTE: it is not clear whether BookReview is available to the public. If not, then it should not be included in CVE.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
BookReview beta 漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
BookReview beta 1.0允许远程攻击者通过传给search.htm的特定参数来获取web服务器的路径,可能是由于一个数值缺失的search[string]参数或者一个不正确的submit[type]值引起,导致系统在结果的出错消息内泄漏路径信息。注:未清楚公众是否可以使用到BookReview。如果不能,则不能包含在CVE内。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-1783

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-1783

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-05-31 · 19 CVEs total

CVE-2005-1778PostNuke 0.750的readpmsg.php跨站脚本攻击(XSS)漏洞
CVE-2005-1787phpStat漏洞
CVE-2005-1786FunkyASP AD System 存在SQL注入漏洞
CVE-2005-1785ZonGG Login.ASP SQL注入漏洞
CVE-2005-1784Hosting Controller 漏洞
CVE-2005-1782BookReview多个跨站脚本攻击漏洞
CVE-2005-1781MailEnable未知漏洞
CVE-2005-1780Active News Manager存在SQL注入漏洞
CVE-2005-1779MaxWebPortal 存在SQL注入漏洞
CVE-2005-0356多家厂商的TCP/IP协议栈实现时间戳PAWS远程拒绝服务漏洞
CVE-2005-1777PostNuke SQL注入漏洞
CVE-2005-1776C'Nedra 漏洞
CVE-2005-1775Machines 漏洞
CVE-2005-1774WEB-DAV Linux File System漏洞
CVE-2005-1773L-Soft Listserv多个未明漏洞
CVE-2005-1772Machines 漏洞
CVE-2005-1771HP-UX可信任系统远程非授权访问漏洞
CVE-2005-1770Avast! Antivirus 漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2005-1783

No comments yet


Leave a comment