pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/847803 | Exploit Patch Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/3395 | Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html | |
http://www.iss.net/security_center/static/7215.php |
Configurations
Information
Published : 2001-10-01 21:00
Updated : 2008-09-10 12:09
NVD link : CVE-2001-1235
Mitre link : CVE-2001-1235
JSON object : View
CWE
Products Affected
derek_leung
- pslash