CVE-2007-4094 Information

Description

PHP remote file inclusion vulnerability in library/authorize.php in IDevSpot PhpHostBot allows remote attackers to execute arbitrary PHP code via a URL in the login_form parameter a different vector than CVE-2006-3776.

Reference

http://securityreason.com/securityalert/2932 http://www.m3ks.org/adv/m3ks-adv-24.7.07.txt http://www.securityfocus.com/archive/1/474682/100/0/threaded

Share on: