Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6471 (phPay)

BugsAlert Home > CVE-2007-6471 (phPay)
 
 

Incomplete blacklist vulnerability in main.php in phPay 2.02.01 on Windows allows remote attackers to conduct directory traversal attacks and include and execute arbitrary local files via a ..\ (dot dot backslash) in the config parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6471

Learn more about CVE-2007-6471 (phPay)
 
Tags: cve-2007-6471 phpay

Related Items

      FrSIRT - Trillian Nickname Processing Remote Buffer Overflow Vulnerability

      Debian: New peercast packages fix arbitrary code execution

      CVE-2008-5050 (clamav)

      FrSIRT - Fedora Security Update Fixes UW-imap Buffer Overflow Vulnerabilities

      CVE-2008-1157 (ciscoWorks_internetwork_performance_monitor)

      MySpace Scripts Poll Creator Script Insertion Vulnerabilities

      Ubuntu update for firefox

 

Pixel