CVE Vulnerabilities

CVE-2001-1468

Published: Feb 07, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PHP remote file inclusion vulnerability in checklogin.php in phpSecurePages 0.24 and earlier allows remote attackers to execute arbitrary PHP code by modifying the cfgProgDir parameter to reference a URL on a remote web server that contains the code.

Affected Software

NameVendorStart VersionEnd Version
PhpsecurepagesSecure_reality0.11_beta (including)0.11_beta (including)
PhpsecurepagesSecure_reality0.12_beta (including)0.12_beta (including)
PhpsecurepagesSecure_reality0.13_beta (including)0.13_beta (including)
PhpsecurepagesSecure_reality0.14_beta (including)0.14_beta (including)
PhpsecurepagesSecure_reality0.15_beta (including)0.15_beta (including)
PhpsecurepagesSecure_reality0.16_beta (including)0.16_beta (including)
PhpsecurepagesSecure_reality0.17_beta (including)0.17_beta (including)
PhpsecurepagesSecure_reality0.18_beta (including)0.18_beta (including)
PhpsecurepagesSecure_reality0.19_beta (including)0.19_beta (including)
PhpsecurepagesSecure_reality0.20_beta (including)0.20_beta (including)
PhpsecurepagesSecure_reality0.21_beta (including)0.21_beta (including)
PhpsecurepagesSecure_reality0.22_beta (including)0.22_beta (including)
PhpsecurepagesSecure_reality0.23_beta (including)0.23_beta (including)
PhpsecurepagesSecure_reality0.24_beta (including)0.24_beta (including)

References