CVE-2001-1334 Information
Feb 14, 2021
cve
Description
Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating a block and specifying the target file as the source URL.
Reference
http://archives.neohapsis.com/archives/bugtraq/2001-05/0126.html http://marc.info/?l=phpslash&m=99029398904419&w=2 http://www.iss.net/security_center/static/9990.php http://www.securityfocus.com/bid/2724 Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating a block and specifying the target file as the source URL.
Share on: