Unrated severityNVD Advisory· Published Sep 16, 2005· Updated Apr 16, 2026
CVE-2005-2951
CVE-2005-2951
Description
Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via ".." sequences and "%00" (trailing null byte) characters in the l parameter, which is used in an include_once statement.
Affected products
1- cpe:2.3:a:azerbaijan_development_group:azdgdating:2.1.3:*:lite:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- rgod.altervista.org/azdg.htmlnvdExploitVendor Advisory
- www.securityfocus.com/bid/14819nvdExploit
- secunia.com/advisories/16814/nvdVendor Advisory
- marc.infonvd
- securityreason.com/securityalert/5nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/22258nvd
News mentions
0No linked articles in our index yet.