Unrated severityNVD Advisory· Published Sep 14, 2005· Updated Jun 16, 2026
CVE-2005-2893
CVE-2005-2893
Description
Direct static code injection vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via the username (u parameter), which is directly injected into a file that is later executed upon login.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
4- securitytracker.com/alerts/2005/Sep/1014861.htmlnvdExploitVendor Advisory
- secunia.com/advisories/16711/nvdVendor Advisory
- marc.infonvd
- exchange.xforce.ibmcloud.com/vulnerabilities/22187nvd
News mentions
0No linked articles in our index yet.