Back

HIGH

Mafia Blog .4 BETA does not properly protect the admin directory, which allows remote attackers to execute arbitrary PHP code by using writeinfo.php to inject the code into info.php

Published Apr 18, 2005

Description

Mafia Blog .4 BETA does not properly protect the admin directory, which allows remote attackers to execute arbitrary PHP code by using writeinfo.php to inject the code into info.php.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (0)

No CWE recorded.

References (4)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner mitre
Published Apr 18, 2005
Updated Aug 7, 2024
Reserved Apr 18, 2005

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 16, 2026

Red Hat

No data

ENISA EUVD

Assigner mitre
Published Apr 18, 2005
Updated Aug 7, 2024

GitHub

No data