VYPR
Unrated severityNVD Advisory· Published Jun 15, 2005· Updated Jun 16, 2026

CVE-2005-1996

CVE-2005-1996

Description

PHP remote file inclusion vulnerability in start.php in Bitrix Site Manager 4.0.x allows remote attackers to execute arbitrary PHP code via the _SERVER[DOCUMENT_ROOT] parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.0:*:*:*:*:*:*:*+ 8 more
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.4:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.5:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.6:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.7:*:*:*:*:*:*:*
    • cpe:2.3:a:bitrix:bitrix_site_manager:4.0.8:*:*:*:*:*:*:*
    • (no CPE)range: 4.0.x

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.