CVE-2005-2848

EXPLOITED

Barracuda Spam Firewall <3.1.17 - Path Traversal

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2005-2848 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including Nicolas Gregoire.

AI-analyzed exploit summary This Metasploit module exploits a command injection vulnerability in Barracuda Spam Firewall appliances prior to version 3.1.18 via the img.pl CGI script. It allows remote command execution by manipulating the 'f' parameter to execute arbitrary shell commands.

Description

Directory traversal vulnerability in img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nicolas Gregoire · webappscgi
https://www.exploit-db.com/exploits/1236

This Metasploit module exploits a command injection vulnerability in Barracuda Spam Firewall appliances prior to version 3.1.18 via the img.pl CGI script. It allows remote command execution by manipulating the 'f' parameter to execute arbitrary shell commands.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Barracuda Spam Firewall < 3.1.18
No auth needed
Prerequisites: Network access to the target's img.pl script (typically on port 8000)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Exploit, Patch, Vendor Advisory x_refsource_misc
http://securiweb.net/wiki/Ressources/AvisDeSecurite/2005.1
Patch, Vendor Advisory vdb-entry x_refsource_sectrack
http://www.securitytracker.com/alerts/2005/Sep/1014837.html
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/16683/
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=112560044813390&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/22120
Exploit, Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14710

Scores

EPSS 0.4180
EPSS Percentile 97.5%

Details

VulnCheck KEV 2020-12-01
Status published
Products (2)
barracuda_networks/barracuda_spam_firewall 3.1.16
barracuda_networks/barracuda_spam_firewall 3.1.17
Published Sep 08, 2005
Tracked Since Feb 18, 2026