CVE-2007-0861

PHP remote file inclusion vulnerability in modules/mail/index.php in phpCOIN RC-1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _CCFG['_PKG_PATH_MDLS'] parameter. NOTE: this issue has been disputed by a reliable third party, who states that a fatal error occurs before the relevant code is reached
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpcoin:phpcoin:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:26

Type Values Removed Values Added
References () http://osvdb.org/33591 - () http://osvdb.org/33591 -
References () http://securityreason.com/securityalert/2230 - () http://securityreason.com/securityalert/2230 -
References () http://www.securityfocus.com/archive/1/458064/100/200/threaded - () http://www.securityfocus.com/archive/1/458064/100/200/threaded -
References () http://www.securityfocus.com/archive/1/458080/100/200/threaded - () http://www.securityfocus.com/archive/1/458080/100/200/threaded -

07 Nov 2023, 02:00

Type Values Removed Values Added
Summary ** DISPUTED ** PHP remote file inclusion vulnerability in modules/mail/index.php in phpCOIN RC-1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _CCFG['_PKG_PATH_MDLS'] parameter. NOTE: this issue has been disputed by a reliable third party, who states that a fatal error occurs before the relevant code is reached. PHP remote file inclusion vulnerability in modules/mail/index.php in phpCOIN RC-1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _CCFG['_PKG_PATH_MDLS'] parameter. NOTE: this issue has been disputed by a reliable third party, who states that a fatal error occurs before the relevant code is reached

Information

Published : 2007-02-09 01:28

Updated : 2024-11-21 00:26


NVD link : CVE-2007-0861

Mitre link : CVE-2007-0861

CVE.ORG link : CVE-2007-0861


JSON object : View

Products Affected

phpcoin

  • phpcoin