Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHProjekt Include Path Multiple Remote File Include Vulnerabilities

Multiple remote file-include vulnerabilities affect PHProjekt because the application fails to properly sanitize user-supplied input before using it in a PHP 'include()' function call.

An attacker may leverage these issues to execute arbitrary server-side script code on an affected computer with the privileges of the webserver process.

Version 5.1.1 of PHProjekt is vulnerable to these issues; previous versions may be affected as well.







 

Privacy Statement
Copyright 2009, SecurityFocus