Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Spid lang_path File Include Vulnerability

SPiD is a gallery management application written in PHP.

SPiD is prone to a remote file include vulnerability, due to lack of validation of user input.

An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access.







 

Privacy Statement
Copyright 2009, SecurityFocus