CVE-2005-1201

AZ Bulletin board <1.0.08 - Path Traversal

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-1201.

AI-analyzed exploit summary This is a detailed technical analysis of multiple vulnerabilities in AZBB forum software, including arbitrary file deletion, file inclusion, and file enumeration. It provides code snippets, root cause analysis, and mitigation guidance.

Description

Multiple directory traversal vulnerabilities in AZ Bulletin board (AZbb) before 1.0.08 allow (1) remote authenticated users with administrative privileges to delete arbitrary files via a .. (dot dot) in the URL to admin_avatar.php or admin_attachment.php or (2) remote attackers to enumerate files via a .. (dot dot) in the attachment parameter to attachment.php, which displays a different message when a file exists or does not exist.

Exploits (1)

exploitdb WRITEUP
webappsphp
https://www.exploit-db.com/exploits/43823

This is a detailed technical analysis of multiple vulnerabilities in AZBB forum software, including arbitrary file deletion, file inclusion, and file enumeration. It provides code snippets, root cause analysis, and mitigation guidance.

Classification
Writeup 100%
Attack Type
Other
Complexity
Moderate
Reliability
Reliable
Target: AZBB <= 1.0.07d
Auth required
Prerequisites: Admin access for file deletion · Register globals enabled for file inclusion
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/20183
Patch third-party-advisory x_refsource_secunia
http://secunia.com/advisories/15013
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=111401838521857&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/15701
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/20180
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/15702

Scores

EPSS 0.0336
EPSS Percentile 87.1%

Details

Status published
Published May 02, 2005
Tracked Since Feb 18, 2026