CyberSec.Space Logo
Back to CVE Browser

CVE-2005-1596

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0320%
EPSS Percentile13.86th
PublishedMay 16, 2005
Last ModifiedApr 16, 2026

Vulnerability Description

index.php in Fusion SBX 1.2 and earlier does not properly use the extract function, which allows remote attackers to bypass authentication by setting the is_logged parameter or execute arbitrary code via the maxname2 parameter.

Affected Platforms (CPE)

πŸ“¦
Fusion

Sbx

<= 1.2

References & Advisories

Related Vulnerabilities