pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html | |
http://www.iss.net/security_center/static/7215.php | |
http://www.kb.cert.org/vuls/id/847803 | Exploit Patch Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/3395 | Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html | |
http://www.iss.net/security_center/static/7215.php | |
http://www.kb.cert.org/vuls/id/847803 | Exploit Patch Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/3395 | Vendor Advisory |
Configurations
History
20 Nov 2024, 23:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html - | |
References | () http://www.iss.net/security_center/static/7215.php - | |
References | () http://www.kb.cert.org/vuls/id/847803 - Exploit, Patch, Third Party Advisory, US Government Resource | |
References | () http://www.securityfocus.com/bid/3395 - Vendor Advisory |
Information
Published : 2001-10-02 04:00
Updated : 2024-11-20 23:37
NVD link : CVE-2001-1235
Mitre link : CVE-2001-1235
CVE.ORG link : CVE-2001-1235
JSON object : View
Products Affected
derek_leung
- pslash
CWE