PT-2004-1400 · Unknown · Les Commentaires

Nourredine Himeur

·

Publicado

2004-03-18

·

Atualizado

2017-07-11

·

CVE-2004-0246

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Les Commentaires version 2.0
Description The issue concerns remote file inclusion vulnerabilities in certain PHP files, specifically fonctions.lib.php, derniers commentaires.php, and admin.php. These vulnerabilities allow remote attackers to execute arbitrary PHP code via the rep parameter.
Recommendations For Les Commentaires version 2.0, consider restricting access to the vulnerable PHP files until a patch is available. As a temporary workaround, avoid using the rep parameter in the affected files to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-0246

Produtos afetados

Les Commentaires