CVE-2005-2259: Critical severity USANet Creations Domain Name Auction vulnerability
The dispallclosed2 function in dispallclosed.pl for multiple USANet Creations products, including (1) USANet Shopping Mall Software, (2) Domain Name Auction Software, (3) Standard Classified Ads Software, and (4) MakeBid Reverse Auction allows remote attackers to execute arbitrary code via shell metacharacters in the DISPCLOSED parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2259?
CVE-2005-2259 is classified as a critical vulnerability allowing remote code execution.
How do I fix CVE-2005-2259?
To fix CVE-2005-2259, update the affected USANet Creations software to the latest version that addresses this issue.
Which software is affected by CVE-2005-2259?
CVE-2005-2259 affects multiple USANet Creations products, including MakeBid Auction, Domain Name Auction, and Usanet Shopping Mall.
What type of vulnerability is CVE-2005-2259?
CVE-2005-2259 is a remote code execution vulnerability that allows attackers to gain unauthorized control over affected systems.
Can CVE-2005-2259 be exploited remotely?
Yes, CVE-2005-2259 can be exploited remotely, making it particularly dangerous for servers accessible from the internet.