CVE-2006-7081 Information

Description

Multiple PHP remote file inclusion vulnerabilities in PhpNews 1.0 allow remote attackers to execute arbitrary PHP code via the Include parameter to (1) Include/lib.inc.php3 and (2) Include/variables.php3.

Reference

http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2002-10/0338.html http://www.iss.net/security_center/static/10456.php http://www.securityfocus.com/bid/19904 https://exchange.xforce.ibmcloud.com/vulnerabilities/28805 https://www.exploit-db.com/exploits/2323

Share on: