{"api_version":"1","generated_at":"2026-07-23T07:41:06+00:00","cve":"CVE-2005-4135","urls":{"html":"https://cve.report/CVE-2005-4135","api":"https://cve.report/api/cve/CVE-2005-4135.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-4135","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-4135"},"summary":{"title":"CVE-2005-4135","description":"Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-12-09 15:03:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.securityfocus.com/archive/1/418838/100/0/threaded","name":"http://www.securityfocus.com/archive/1/418838/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/x-c","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/15764","name":"http://www.securityfocus.com/bid/15764","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"SimpleBBS Remote Arbitrary Command Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2005/2807","name":"http://www.vupen.com/english/advisories/2005/2807","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1015323","name":"http://securitytracker.com/id?1015323","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - SimpleBBS Input Validation Hole in 'name' Parameter Lets Remote Users Execute Arbitrary Commands","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/17949","name":"http://secunia.com/advisories/17949","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"SimpleBBS PHP Code Injection and Local File Inclusion Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-4135","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-4135","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"4135","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"simplemedia","cpe5":"simplebbs","cpe6":"1.0.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"4135","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"simplemedia","cpe5":"simplebbs","cpe6":"1.0.7","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"4135","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"simplemedia","cpe5":"simplebbs","cpe6":"1.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T23:31:49.120Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1015323","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015323"},{"name":"20051207 SimpleBBS <= v1.1 remote commands execution in c by: unitedasia security crew","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/418838/100/0/threaded"},{"name":"ADV-2005-2807","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2005/2807"},{"name":"15764","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/15764"},{"name":"17949","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17949"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-12-07T00:00:00.000Z","descriptions":[{"lang":"en","value":"Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-19T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1015323","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015323"},{"name":"20051207 SimpleBBS <= v1.1 remote commands execution in c by: unitedasia security crew","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/418838/100/0/threaded"},{"name":"ADV-2005-2807","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2005/2807"},{"name":"15764","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/15764"},{"name":"17949","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17949"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-4135","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1015323","refsource":"SECTRACK","url":"http://securitytracker.com/id?1015323"},{"name":"20051207 SimpleBBS <= v1.1 remote commands execution in c by: unitedasia security crew","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/418838/100/0/threaded"},{"name":"ADV-2005-2807","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2005/2807"},{"name":"15764","refsource":"BID","url":"http://www.securityfocus.com/bid/15764"},{"name":"17949","refsource":"SECUNIA","url":"http://secunia.com/advisories/17949"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-4135","datePublished":"2005-12-09T15:00:00.000Z","dateReserved":"2005-12-09T00:00:00.000Z","dateUpdated":"2024-08-07T23:31:49.120Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-12-09 15:03:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:simplemedia:simplebbs:1.0.6:*:*:*:*:*:*:*","matchCriteriaId":"3C22A112-E9E0-4480-9406-9F685D577F98"},{"vulnerable":true,"criteria":"cpe:2.3:a:simplemedia:simplebbs:1.0.7:*:*:*:*:*:*:*","matchCriteriaId":"5D4ED99C-AFBA-485A-BDCC-A43C781F1DA2"},{"vulnerable":true,"criteria":"cpe:2.3:a:simplemedia:simplebbs:1.1:*:*:*:*:*:*:*","matchCriteriaId":"04CFC80A-2F70-4B73-AFDA-C1A524274381"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"4135","Ordinal":"1","Title":"CVE-2005-4135","CVE":"CVE-2005-4135","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"4135","Ordinal":"1","NoteData":"Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php.","Type":"Description","Title":"CVE-2005-4135"},{"CveYear":"2005","CveId":"4135","Ordinal":"2","NoteData":"2005-12-09","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"4135","Ordinal":"3","NoteData":"2018-10-19","Type":"Other","Title":"Modified"}]}}}