Unrated severityNVD Advisory· Published Nov 1, 2005· Updated Apr 16, 2026
CVE-2005-3404
CVE-2005-3404
Description
Multiple PHP file inclusion vulnerabilities in ATutor 1.4.1 through 1.5.1-pl1 allow remote attackers to include arbitrary files via the section parameter followed by a null byte (%00) in (1) body_header.inc.php and (2) print.php.
Affected products
5cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.1:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.2:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.4.3:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:adaptive_technology_resource_centre:atutor:1.5.1_pl1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- www.osvdb.org/20345nvdPatch
- www.osvdb.org/20346nvdPatch
- secunia.com/advisories/16915/nvdExploitPatchVendor Advisory
- secunia.com/secunia_research/2005-55/advisory/nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/15221nvdExploitPatch
- marc.infonvd
- securityreason.com/securityalert/123nvd
- securitytracker.com/idnvd
- www.vupen.com/english/advisories/2005/2228nvd
News mentions
0No linked articles in our index yet.