PHP remote file inclusion vulnerability in sample/xls2mysql in ABC Excel Parser Pro 4.0 allows remote attackers to execute arbitrary PHP code via a URL in the parser_path parameter.
Link | Tags |
---|---|
http://osvdb.org/38112 | vdb entry |
http://securityreason.com/securityalert/2732 | third party advisory |
http://www.xmors-seurity.com/advisory/excelparser%28rfi%29.txt | url repurposed |
http://www.securityfocus.com/archive/1/469298/100/0/threaded | mailing list |
http://www.securityfocus.com/bid/24103 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/34461 | vdb entry |