CVE Vulnerabilities

CVE-2001-1237

Published: Oct 02, 2001 | Modified: Sep 10, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Phormation PHP script 0.9.1 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the phormationdir variable.

Affected Software

Name Vendor Start Version End Version
Phormation Peaceworks_computer_consulting * 0.9.1 (including)

References