Simple PHP Blog Remote Directory...

- AV AC AU C I A
发布: 2005-01-07
修订: 2025-04-13

It is reported that Simple PHP Blog is susceptible to two remote directory traversal vulnerabilities. These issues are due to a failure of the application to properly sanitize user-supplied input data. The first vulnerability reportedly allows remote attackers to retrieve the contents of arbitrary, potentially sensitive files located on the serving computer with the credentials of the affected server process. The second vulnerability reportedly allows remote attackers to create directories in arbitrary locations on the serving computer with the credentials of the affected server process. These vulnerabilities are reported to exist in version 0.3.7c of Simple PHP Blog. Other versions may also be affected.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息