Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHPOutsourcing Zorum Remote Include Command Execution Vulnerability

It has been reported that Zorum may allow remote users to influence to location of PHP includes. Because of this, it is possible for a remote user to include an external arbitrary PHP script containing commands that may be carried out on the vulnerable host.







 

Privacy Statement
Copyright 2009, SecurityFocus