VYPR
Unrated severityNVD Advisory· Published Dec 20, 2005· Updated Apr 16, 2026

CVE-2005-4389

CVE-2005-4389

Description

search.cfm in CONTENS 3.0 and earlier allows remote attackers to obtain the full server path via invalid (1) submit.y, (2) bool, (3) itemsperpage, (4) submit, (5) submit.x, (6) criteria, (7) advanced, and (8) intern parameters.

Affected products

2
  • cpe:2.3:a:contens:contens:2.5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:contens:contens:2.5:*:*:*:*:*:*:*
    • cpe:2.3:a:contens:contens:3.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.