CVE-2005-3549: Code Injection
Published Nov 16, 2005
·Updated
Direct code injection vulnerability in Task Manager in Invision Power Board 2.0.1 allows limited remote attackers to execute arbitrary code by referencing the file in "Task PHP File To Run" field and selecting "Run Task Now".
Affected Software
1 affected component
Invision Power Services Invision Board=2.0.1
Remediation
Patch Available
Event History
Nov 16, 2005
CVE Published
07:42 AM
CVE Published
via MITRE·12:37 PM
Data Sourced
via MITRE·12:37 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3549?
CVE-2005-3549 is considered a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2005-3549?
To fix CVE-2005-3549, upgrade to a newer version of Invision Power Board that addresses this vulnerability.
3
What software is affected by CVE-2005-3549?
CVE-2005-3549 affects Invision Power Board version 2.0.1.
4
What type of vulnerability is CVE-2005-3549?
CVE-2005-3549 is a direct code injection vulnerability allowing remote attackers to execute arbitrary code.
5
Can CVE-2005-3549 be exploited remotely?
Yes, CVE-2005-3549 can be exploited remotely by attackers with limited access.