CVE-2005-0980

AlstraSoft EPay Pro 2.0 - RCE

Title source: llm
STIX 2.1

Description

PHP remote file inclusion vulnerability in index.php in AlstraSoft EPay Pro 2.0 allows remote attackers to execute arbitrary PHP code by modifying the view parameter to reference a URL on a remote web server that contains the code.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Dcrab · textwebappsphp
https://www.exploit-db.com/exploits/25327

References (3)

Core 3
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/14802
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111247198021626&w=2
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12973

Scores

EPSS 0.0209
EPSS Percentile 84.1%

Details

Status published
Products (1)
alstrasoft/epay 2.0
Published May 02, 2005
Tracked Since Feb 18, 2026