VYPR
Critical severity9.8NVD Advisory· Published Nov 23, 2004· Updated Apr 16, 2026

CVE-2004-0285

CVE-2004-0285

Description

PHP remote file inclusion vulnerabilities in include/footer.inc.php in (1) AllMyVisitors, (2) AllMyLinks, and (3) AllMyGuests allow remote attackers to execute arbitrary PHP code via a URL in the _AMVconfig[cfg_serverpath] parameter.

Affected products

13
  • cpe:2.3:a:allmyguests_project:allmyguests:0.1.2:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:allmyguests_project:allmyguests:0.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:allmyguests_project:allmyguests:0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:allmyguests_project:allmyguests:0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:allmyguests_project:allmyguests:0.4.1:*:*:*:*:*:*:*
  • cpe:2.3:a:allmylinks_project:allmylinks:0.3:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:allmylinks_project:allmylinks:0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:allmylinks_project:allmylinks:0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:allmylinks_project:allmylinks:0.4.1:*:*:*:*:*:*:*
    • cpe:2.3:a:allmylinks_project:allmylinks:0.4.3:*:*:*:*:*:*:*
    • cpe:2.3:a:allmylinks_project:allmylinks:0.4.4:*:*:*:*:*:*:*
    • cpe:2.3:a:allmylinks_project:allmylinks:0.4.9:*:*:*:*:*:*:*
    • cpe:2.3:a:allmylinks_project:allmylinks:0.5:*:*:*:*:*:*:*
  • cpe:2.3:a:allmyvisitors_project:allmyvisitors:0.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:allmyvisitors_project:allmyvisitors:0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:allmyvisitors_project:allmyvisitors:0.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

8

News mentions

0

No linked articles in our index yet.