PHP remote file inclusion vulnerability in tables_update.inc.php in phpGroupWare 0.9.14.005 and earlier allows remote attackers to execute arbitrary PHP code via an external URL in the appdir parameter.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/12074 | vdb entry |
https://savannah.gnu.org/bugs/?func=detailitem&item_id=7478 | exploit |
http://www.osvdb.org/7599 | vdb entry |