CVE-2008-7240 Information

Description

Directory traversal vulnerability in include/unverified.inc.php in Linux Web Shop (LWS) php User Base 1.3beta allows remote attackers to include and execute arbitrary local files via the template parameter.

Reference

http://www.securityfocus.com/bid/27964 https://exchange.xforce.ibmcloud.com/vulnerabilities/40793 https://www.exploit-db.com/exploits/5179

Share on: