Unrated severityNVD Advisory· Published Jul 11, 2005· Updated Apr 16, 2026
CVE-2005-2198
CVE-2005-2198
Description
PHP remote file inclusion vulnerability in lang.php in SPiD before 1.3.1 allows remote attackers to execute arbitrary code via the lang_path parameter.
Affected products
9cpe:2.3:a:spid:spid:1.0.1:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:spid:spid:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:spid:spid:1.3.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- securitytracker.com/idnvdExploit
- secunia.com/advisories/16022nvdVendor Advisory
- spid.adnx.net/index_en.htmlnvd
- www.securityfocus.com/bid/14208nvd
News mentions
0No linked articles in our index yet.