Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PhpCOIN Multiple Remote File Include Vulnerabilities

phpCOIN is prone to multiple remote file-include vulnerabilities because it fails to properly sanitize user-supplied input.

An attacker can exploit these issues to include arbitrary remote PHP code and execute it in the context of the webserver process.

Successful exploitation may lead to a compromise of the underlying system; other attacks are also possible.

Version 1.2.3 of phpCOIN is known to be vulnerable; previous versions may be affected as well.







 

Privacy Statement
Copyright 2009, SecurityFocus