CVE-2007-2411

PHP remote file inclusion vulnerability in index.php in Sphider 1.2.x allows remote attackers to execute arbitrary PHP code via a URL in the include_dir parameter. NOTE: a third party disputes this vulnerability, stating that "the application is not vulnerable to this issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sphider:sphider:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:30

Type Values Removed Values Added
References () http://osvdb.org/34174 - () http://osvdb.org/34174 -
References () http://securityreason.com/securityalert/2648 - () http://securityreason.com/securityalert/2648 -
References () http://www.securityfocus.com/archive/1/467102/100/0/threaded - () http://www.securityfocus.com/archive/1/467102/100/0/threaded -
References () http://www.securityfocus.com/archive/1/467220/100/0/threaded - () http://www.securityfocus.com/archive/1/467220/100/0/threaded -
References () http://www.securityfocus.com/bid/23699 - () http://www.securityfocus.com/bid/23699 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/33963 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/33963 -

07 Nov 2023, 02:00

Type Values Removed Values Added
Summary ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Sphider 1.2.x allows remote attackers to execute arbitrary PHP code via a URL in the include_dir parameter. NOTE: a third party disputes this vulnerability, stating that "the application is not vulnerable to this issue." PHP remote file inclusion vulnerability in index.php in Sphider 1.2.x allows remote attackers to execute arbitrary PHP code via a URL in the include_dir parameter. NOTE: a third party disputes this vulnerability, stating that "the application is not vulnerable to this issue.

Information

Published : 2007-05-01 10:19

Updated : 2024-11-21 00:30


NVD link : CVE-2007-2411

Mitre link : CVE-2007-2411

CVE.ORG link : CVE-2007-2411


JSON object : View

Products Affected

sphider

  • sphider