HIGH
PHP remote file inclusion vulnerability in main.inc in KorWeblog 1.6.2-cvs and earlier allows remote attackers to execute arbitrary PHP code by modifying the G_PATH parameter to reference a URL on a remote web server that contains the code, as demonstrated in index.php when using .
Published Feb 12, 2005
7.5
HIGHCVSS 2.0
EPSS 1.68%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.