Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHPNuke Remote File Copy Vulnerability

Solution:
An unofficial fix has been suggested by Magnus Skjegstad <magnus@skjegstad.com>:

In "admin.php"; change

"if($upload) {" to
"if (($upload) && ($admintest)) {"

Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com <mailto:vuldb@securityfocus.com>.








 

Privacy Statement
Copyright 2009, SecurityFocus