Unrated severityNVD Advisory· Published Sep 16, 2005· Updated Apr 16, 2026
CVE-2005-2952
CVE-2005-2952
Description
Directory traversal vulnerability in s.pl in Subscribe Me Pro 2.044.09P and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the l parameter.
Affected products
1- cpe:2.3:a:subscribe_me_pro:subscribe_me_pro:*:*:*:*:*:*:*:*Range: <=2.44.09p
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- secunia.com/advisories/16796/nvdPatchVendor Advisory
- www.h4cky0u.org/advisories/HYA-2005-007-subscribe-me-pro.txtnvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/14817nvdExploitPatch
- marc.infonvd
- securityreason.com/securityalert/4nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/22249nvd
News mentions
0No linked articles in our index yet.