PT-2008-2722 · Barryvan · Barryvan Compo Manager

Mhz91

·

Published

2008-03-03

·

Updated

2017-09-29

·

CVE-2008-1126

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Barryvan Compo Manager version 0.3
Description The issue allows remote attackers to execute arbitrary PHP code via a URL in the pageURL parameter in the main.php file.
Recommendations For Barryvan Compo Manager version 0.3, avoid using the pageURL parameter in the main.php file until the issue is resolved. Consider restricting access to the main.php file to minimize the risk of exploitation.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-1126

Affected Products

Barryvan Compo Manager