phpMyNewsLetter Remote File Include...

- AV AC AU C I A
发布: 2002-10-03
修订: 2025-04-13

A vulnerability has been discovered in phpMyNewsLetter. Reportedly, it is possible to pass an attacker-specified file include location to a CGI paramter of the 'customize.php' script. This may allow an attacker to execute arbitrary commands with the privileges of the webserver. Additionally, an attacker may exploit this problem to view local webserver readable files.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息