CVE-2004-2601 Information

Description

PHP remote file inclusion vulnerability in UberTec Help Center Live (HCL) allows remote attackers to read local files and possibly execute PHP code via a URL in the SKIN_inner parameter to inc/skin.php.

Reference

http://secunia.com/advisories/13652 http://securitytracker.com/id?1012685 http://www.gulftech.org/?node=research&article_id=00058-12242004 http://www.osvdb.org/12631 https://exchange.xforce.ibmcloud.com/vulnerabilities/18695

Share on: