Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

YABB SE Packages.PHP Remote File Include Vulnerability

YaBB SE allows remote users to influence the location of included files. A remote attacker may exploit this condition to cause an external, attacker-supplied file to be included and executed by YABB SE.

This may allow a remote attacker to execute arbitrary commands in the context of the webserver.







 

Privacy Statement
Copyright 2009, SecurityFocus