{"api_version":"1","generated_at":"2026-07-23T04:35:43+00:00","cve":"CVE-2005-0793","urls":{"html":"https://cve.report/CVE-2005-0793","api":"https://cve.report/api/cve/CVE-2005-0793.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-0793","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-0793"},"summary":{"title":"CVE-2005-0793","description":"PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-03-15 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://marc.info/?l=bugtraq&m=111090324111053&w=2","name":"http://marc.info/?l=bugtraq&m=111090324111053&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Few remote bugs in zPanel' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=111142323616309&w=2","name":"http://marc.info/?l=bugtraq&m=111142323616309&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Re: Few remote bugs in zPanel' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/12809","name":"http://www.securityfocus.com/bid/12809","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"ZPanel Multiple SQL Injection and File Include Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-0793","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-0793","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"793","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zpanel","cpe5":"zpanel","cpe6":"2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"793","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zpanel","cpe5":"zpanel","cpe6":"2.5_beta","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"793","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zpanel","cpe5":"zpanel","cpe6":"2.5_beta10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"793","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zpanel","cpe5":"zpanel","cpe6":"2.5_beta9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T21:28:28.135Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20050320 Re: Few remote bugs in zPanel","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=111142323616309&w=2"},{"name":"20050315 Few remote bugs in zPanel","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=111090324111053&w=2"},{"name":"12809","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/12809"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-03-15T00:00:00.000Z","descriptions":[{"lang":"en","value":"PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2016-10-17T13:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20050320 Re: Few remote bugs in zPanel","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=111142323616309&w=2"},{"name":"20050315 Few remote bugs in zPanel","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=111090324111053&w=2"},{"name":"12809","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/12809"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-0793","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20050320 Re: Few remote bugs in zPanel","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=111142323616309&w=2"},{"name":"20050315 Few remote bugs in zPanel","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=111090324111053&w=2"},{"name":"12809","refsource":"BID","url":"http://www.securityfocus.com/bid/12809"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-0793","datePublished":"2005-03-20T05:00:00.000Z","dateReserved":"2005-03-20T00:00:00.000Z","dateUpdated":"2024-08-07T21:28:28.135Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-03-15 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zpanel:zpanel:2.0:*:*:*:*:*:*:*","matchCriteriaId":"5FCBF151-50B2-4BC7-B0B7-69697D76869A"},{"vulnerable":true,"criteria":"cpe:2.3:a:zpanel:zpanel:2.5_beta:*:*:*:*:*:*:*","matchCriteriaId":"7D99E1D5-F0BC-4F24-8B6B-10E7ED3748A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:zpanel:zpanel:2.5_beta9:*:*:*:*:*:*:*","matchCriteriaId":"D3E03CBB-4539-4845-A6DD-B9D559AB2766"},{"vulnerable":true,"criteria":"cpe:2.3:a:zpanel:zpanel:2.5_beta10:*:*:*:*:*:*:*","matchCriteriaId":"6AA0BCD3-1390-4EE6-8D84-CEB816BF266F"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"793","Ordinal":"1","Title":"CVE-2005-0793","CVE":"CVE-2005-0793","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"793","Ordinal":"1","NoteData":"PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter.","Type":"Description","Title":"CVE-2005-0793"},{"CveYear":"2005","CveId":"793","Ordinal":"2","NoteData":"2005-03-20","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"793","Ordinal":"3","NoteData":"2016-10-17","Type":"Other","Title":"Modified"}]}}}