Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1066 (Smarty)

BugsAlert Home > CVE-2008-1066 (Smarty)
 
 

The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used by Serendipity (S9Y) and other products, allows attackers to call arbitrary PHP functions via templates, related to a '\0' character in a search string.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1066

Learn more about CVE-2008-1066 (Smarty)
 
Tags: cve-2008-1066 smarty

Related Items

      Basebuilder "mj_config[src_path]" File Inclusion Vulnerability

      CVE-2008-3185 (relative_real_estate_systems)

      CVE-2008-4485 (security_gateway_os)

      CVE-2008-0420 (Firefox)

      VU#538011: LANDesk QIP service buffer overflow vulnerability

      contactforms "cforms-css.php" Remote File Inclusion

      Belkin Wireless G Plus MIMO Router F5D9230-4 Authentication Bypass Vulnerability

 

Pixel