Multiple PHP remote file inclusion vulnerabilities in PhpNews 1.0 allow remote attackers to execute arbitrary PHP code via the Include parameter to (1) Include/lib.inc.php3 and (2) Include/variables.php3.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/28805 | vdb entry |
https://www.exploit-db.com/exploits/2323 | exploit |
http://www.iss.net/security_center/static/10456.php | vdb entry |
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2002-10/0338.html | mailing list |
http://www.securityfocus.com/bid/19904 | vendor advisory vdb entry exploit |