Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Discuz! 'index.php' Remote Code Execution Vulnerability

Discuz! is prone to a vulnerability that lets remote attackers execute arbitrary code because the application fails to sanitize user-supplied input.

An attacker can leverage this issue to execute arbitrary PHP code on an affected computer with the privileges of the webserver process.

Discuz! 6.x and 7.x are vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus