Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

R00T.H4X0R

#39905de 53,635
6.8CVSS total
Vulnerabilidades · 1
PT-2010-2706
6.8
2010-03-16
Rezervi · Rezervi · CVE-2010-0983
**Name of the Vulnerable Software and Affected Versions** Rezervi versions 3.0.2 and earlier **Description** The issue allows remote attackers to execute arbitrary PHP code via a URL in the `root` parameter when `register globals` is enabled. This is a different vector than previously identified issues. **Recommendations** For Rezervi versions 3.0.2 and earlier, consider disabling the `register globals` setting to prevent exploitation until a patch is available. Additionally, restrict access to the `include/mail.inc.php` file to minimize the risk of arbitrary PHP code execution.