PHP remote file inclusion vulnerability in checklogin.php in phpSecurePages 0.24 and earlier allows remote attackers to execute arbitrary PHP code by modifying the cfgProgDir parameter to reference a URL on a remote web server that contains the code.
Link | Tags |
---|---|
http://securitytracker.com/id?1001408 | vdb entry |
http://www.kb.cert.org/vuls/id/391347 | third party advisory us government resource |
http://www.securityfocus.com/bid/2970 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6774 | vdb entry |