Описание
PHP remote file inclusion vulnerabilities in include/footer.inc.php in (1) AllMyVisitors, (2) AllMyLinks, and (3) AllMyGuests allow remote attackers to execute arbitrary PHP code via a URL in the _AMVconfig[cfg_serverpath] parameter.
PHP remote file inclusion vulnerabilities in include/footer.inc.php in (1) AllMyVisitors, (2) AllMyLinks, and (3) AllMyGuests allow remote attackers to execute arbitrary PHP code via a URL in the _AMVconfig[cfg_serverpath] parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2004-0285
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15226
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15227
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15228
- http://marc.info/?l=bugtraq&m=107696209514155&w=2
- http://marc.info/?l=bugtraq&m=107696235424865&w=2
- http://marc.info/?l=bugtraq&m=107696291728750&w=2
- http://www.osvdb.org/6721
- http://www.securityfocus.com/bid/9664
Связанные уязвимости
CVSS3: 9.8
nvd
около 21 года назад
PHP remote file inclusion vulnerabilities in include/footer.inc.php in (1) AllMyVisitors, (2) AllMyLinks, and (3) AllMyGuests allow remote attackers to execute arbitrary PHP code via a URL in the _AMVconfig[cfg_serverpath] parameter.