Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0450 (Blog CMS)

BugsAlert Home > CVE-2008-0450 (Blog CMS)
 
 

Multiple PHP remote file inclusion vulnerabilities in BLOG:CMS 4.2.1.c allow remote attackers to execute arbitrary PHP code via a URL in the (1) DIR_PLUGINS parameter to (a) index.php, and the (2) DIR_LIBS parameter to (b) media.php and (c) xmlrpc/server.php in admin/.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0450

Learn more about CVE-2008-0450 (Blog CMS)
 
Tags: cve-2008-0450 blog cms

Related Items

      FrSIRT - Debian Security Update Fixes UnZip Code Execution Vulnerability

      CVE-2008-1936 (Classifieds Caffe)

     
      Bugtraq: iPei cross site scripting Vulnerablity

      VUPEN - Sophos Anti-Virus CAB Archive Handling Memory Corruption Vulnerability

      Vuln: LIVE555 Media Server ParseRTSPRequestString Remote Denial Of Service Vulnerability

      Product Sale Framework 0.1b (forum_topic_id) SQL Injection Vulnerability

 

Pixel