xmb.php in XMB Forum 1.9.1 extracts and defines all provided variables, which allows remote attackers to modify arbitrary server variables such as _SERVER[REMOTE_ADDR].
References
Configurations
Information
Published : 2005-08-15 21:00
Updated : 2021-04-29 08:15
NVD link : CVE-2005-2574
Mitre link : CVE-2005-2574
JSON object : View
CWE
Products Affected
xmb_forum
- xmb