PHP remote file inclusion vulnerability in init.php in Fast Click SQL Lite 1.1.7, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the CFG[CDIR] parameter.
References
Configurations
Information
Published : 2008-10-20 18:18
Updated : 2017-09-28 18:32
NVD link : CVE-2008-4624
Mitre link : CVE-2008-4624
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
ftrsoft
- fast_click_sql_lite