PHP remote file include vulnerability in index.php in OrjinWeb E-commerce allows remote attackers to execute arbitrary code via a URL in the page parameter. NOTE: it is not clear, but OrjinWeb might be an application service, in which case it should not be included in CVE.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/421312/100/0/threaded | mailing list |
http://www.osvdb.org/22387 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24097 | vdb entry |
http://www.securityfocus.com/bid/16199 | vdb entry exploit |