pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html | |
http://www.iss.net/security_center/static/7215.php | |
http://www.kb.cert.org/vuls/id/847803 | Exploit Patch Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/3395 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2001-10-02 04:00
Updated : 2008-09-10 19:09
NVD link : CVE-2001-1235
Mitre link : CVE-2001-1235
CVE.ORG link : CVE-2001-1235
JSON object : View
Products Affected
derek_leung
- pslash
CWE