Unrated severityNVD Advisory· Published Nov 1, 2005· Updated Jun 16, 2026
CVE-2005-3404
CVE-2005-3404
Description
Multiple PHP file inclusion vulnerabilities in ATutor 1.4.1 through 1.5.1-pl1 allow remote attackers to include arbitrary files via the section parameter followed by a null byte (%00) in (1) body_header.inc.php and (2) print.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.1:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.2:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.3:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.5.1_pl1:*:*:*:*:*:*:*
- (no CPE)range: >=1.4.1 <=1.5.1-pl1
Patches
Vulnerability mechanics
References
9- www.osvdb.org/20345nvdPatch
- www.osvdb.org/20346nvdPatch
- secunia.com/advisories/16915/nvdExploitPatchVendor Advisory
- secunia.com/secunia_research/2005-55/advisory/nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/15221nvdExploitPatch
- marc.infonvd
- securityreason.com/securityalert/123nvd
- securitytracker.com/idnvd
- www.vupen.com/english/advisories/2005/2228nvd
News mentions
0No linked articles in our index yet.