Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6412 (Bitweaver)

BugsAlert Home > CVE-2007-6412 (Bitweaver)
 
 

Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, allows remote attackers to inject arbitrary PHP code via an editcomments action.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6412

Learn more about CVE-2007-6412 (Bitweaver)
 
Tags: cve-2007-6412 bitweaver

Related Items

      OSX/RSPlug-A installs malicious DNS entries on Mac OS X 10.4, 10.5 systems

      CVE-2007-6104 (FileMaker Server, FileMaker Pro, FileMaker Developer)

      CVE-2008-0396 (Update Server)

      Trojan-Spy.Win32.Montp.p

      Brief: Spy court denies access to rulings

      FrSIRT - MetaGauge HTTP Request Remote Directory Traversal Vulnerability

      Mobile-spy Victim/User Phone/SMS/URL Log Spoofing and Persistent XSS Injection

 

Pixel