PT-2005-3515 · Cpaint · Cpaint

Thor Larholm

+1

·

Published

2005-08-19

·

Updated

2016-10-18

·

CVE-2005-2625

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions CPAINT (affected versions not specified)
Description The issue is related to an incomplete blacklist vulnerability in the checkBlacklist function. This allows remote attackers to execute arbitrary commands via the ExecuteGlobal function or GetRef statement, which are not included in the blacklist.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-2625

Affected Products

Cpaint