Unrated severityNVD Advisory· Published Aug 24, 2005· Updated Apr 16, 2026
CVE-2005-2691
CVE-2005-2691
Description
includes/common.php in RunCMS 1.2 and earlier calls the extract function with EXTR_OVERWRITE on HTTP POST variables, which allows remote attackers to overwrite arbitrary variables, possibly allowing execution of arbitrary code.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- secunia.com/advisories/16514nvdVendor Advisory
- www.gulftech.orgnvdVendor Advisory
News mentions
0No linked articles in our index yet.