Multiple PHP remote file inclusion vulnerabilities in eFiction 3.1.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the path_to_smf parameter to (1) bridges/SMF/logout.php or (2) get_session_vars.php.
References
Configurations
Information
Published : 2007-02-26 18:28
Updated : 2017-10-10 18:31
NVD link : CVE-2007-1118
Mitre link : CVE-2007-1118
JSON object : View
CWE
Products Affected
efiction
- efiction