CVE-2009-3362 Information

Description

PHP remote file inclusion vulnerability in printnews.php3 in SZNews 2.7 allows remote attackers to execute arbitrary PHP code via a URL in the id parameter.

Reference

http://osvdb.org/57986 http://packetstormsecurity.org/0909-exploits/sznews-rfi.txt http://secunia.com/advisories/36699

Share on: