Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0423 (Lama Software)

BugsAlert Home > CVE-2008-0423 (Lama Software)
 
 

Multiple PHP remote file inclusion vulnerabilities in Lama Software allow remote attackers to execute arbitrary PHP code via a URL in the MY_CONF[classRoot] parameter to (1) inc.steps.access_error.php, (2) inc.steps.check_login.php, or (3) inc.steps.init_system.php in admin/functions/.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0423

Learn more about CVE-2008-0423 (Lama Software)
 
Tags: cve-2008-0423 lama software

Related Items

      New Microsoft Exploits require immediate patch application

      eXV2 Viso Module "kid" SQL Injection Vulnerability

      Best Network security FOSS Apps

      CVE-2008-3995 (database_10g, database_11i)

      Vuln: Extrakt Framework 'index.php' Cross Site Scripting Vulnerability

      MS08-052 ? Critical: Vulnerabilities in GDI+ Could Allow Remote Code Execution (954593) - Version:3.0

      Benjamin Smedberg: More Fun with Compiler Warnings

 

Pixel