PhpWebThings is a collection of PHP scripts designed to create a web based portal system. It uses a MySQL database, and is able to run on Windows, Linux and other Unix based operating systems. A vulnerability exists in some versions of PhpWebThings. It is possible to directly call the helper script core/main.php. If a remote user requests this script directly with maliciously constructed CGI parameters, it may be possible to subvert the functionality of the script, and possibly modify database queries.
PhpWebThings is a collection of PHP scripts designed to create a web based portal system. It uses a MySQL database, and is able to run on Windows, Linux and other Unix based operating systems. A vulnerability exists in some versions of PhpWebThings. It is possible to directly call the helper script core/main.php. If a remote user requests this script directly with maliciously constructed CGI parameters, it may be possible to subvert the functionality of the script, and possibly modify database queries.