← Back

CVE-2005-4857

nvd nist
Published: Dec 31, 2005Modified: Apr 16, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051128 allows remote authenticated users to cause a denial of service (Apache httpd segmentation fault) via a request to content/advancedsearch.php with an empty SearchContentClassID parameter, reportedly related to a "memory addressing error".

Affected (16)

Products: Ez: Ez Publish
1 product
Ez Publish
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Ez
Up to 3.8.0
Version 3.5.0
Version 3.5.1
Version 3.5.2
Version 3.5.3
Version 3.5.4
Version 3.5.5
Version 3.5.6
Version 3.6.0
Version 3.6.1
Version 3.6.2
Version 3.6.3
Version 3.6.4
Version 3.7.0
Version 3.7.1
Version 3.7.2

Related CWEs

Timeline

No history available yet.