CVE-2004-1660 Information
Feb 14, 2021
cve
Description
PHP remote file inclusion vulnerability in CuteNews 1.3.6 and earlier allows remote attackers to execute arbitrary PHP code via the cutepath parameter to (1) show_archives.php or (2) show_news.php.
Reference
http://seclists.org/lists/bugtraq/2004/Sep/0014.html http://secunia.com/advisories/12432 http://www.7a69ezine.org/node/view/130 https://exchange.xforce.ibmcloud.com/vulnerabilities/17288
Share on: