Unrated severityNVD Advisory· Published Jul 13, 2005· Updated Apr 16, 2026
CVE-2005-2256
CVE-2005-2256
Description
Encoded directory traversal vulnerability in phpPgAdmin 3.1 to 3.5.3 allows remote attackers to access arbitrary files via "%2e%2e%2f" (encoded dot dot) sequences in the formLanguage parameter.
Affected products
6cpe:2.3:a:phppgadmin:phppgadmin:3.1:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:phppgadmin:phppgadmin:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:phppgadmin:phppgadmin:3.2:*:*:*:*:*:*:*
- cpe:2.3:a:phppgadmin:phppgadmin:3.3:*:*:*:*:*:*:*
- cpe:2.3:a:phppgadmin:phppgadmin:3.4:*:*:*:*:*:*:*
- cpe:2.3:a:phppgadmin:phppgadmin:3.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:phppgadmin:phppgadmin:3.5.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- securitytracker.com/idnvdExploit
- www.securityfocus.com/bid/14142nvdExploit
- secunia.com/advisories/15941nvdVendor Advisory
- www.vuxml.org/freebsd/88188a8c-eff6-11d9-8310-0001020eed82.htmlnvdVendor Advisory
- archives.neohapsis.com/archives/dailydave/2005-q3/0010.htmlnvd
- secunia.com/advisories/16116nvd
- sourceforge.net/project/shownotes.phpnvd
- www.debian.org/security/2005/dsa-759nvd
News mentions
0No linked articles in our index yet.