CyberSec.Space Logo
返回 CVE 浏览器

CVE-2005-1596

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0320%
EPSS Percentile13.86th
Published2005年5月16日
Last Modified2026年4月16日

Vulnerability Description

index.php in Fusion SBX 1.2 and earlier does not properly use the extract function, which allows remote attackers to bypass authentication by setting the is_logged parameter or execute arbitrary code via the maxname2 parameter.

Affected Platforms (CPE)

📦
Fusion

Sbx

<= 1.2

References & Advisories

相关漏洞威胁