PHP Advanced Transfer Manager 1.30 has a default password for the administrator user, which allows remote attackers to upload and execute arbitrary PHP files.
References
Link | Resource |
---|---|
http://rgod.altervista.org/phpatm130.html | Exploit |
Configurations
Information
Published : 2005-09-20 15:03
Updated : 2008-09-05 13:53
NVD link : CVE-2005-2998
Mitre link : CVE-2005-2998
JSON object : View
CWE
Products Affected
bugada_andrea
- php_advanced_transfer_manager