CVE-2005-3835

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
26/11/2005
Last modified:
10/08/2011

Description

PHP remote file inclusion vulnerability in support/index.php in DeskLance 2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the main parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:desklance:desklance:*:*:*:*:*:*:*:* 2.3 (including)