PHP remote file inclusion vulnerability in view/general.php in Kristian Niemi Polaring 00.04.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _SESSION[dirMain] parameter.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/29138 | vdb entry |
http://sourceforge.net/forum/forum.php?forum_id=620481 | |
http://www.securityfocus.com/bid/20183 | vdb entry exploit |
https://www.exploit-db.com/exploits/2427 | exploit |