Benjamin Lefevre Dobermann FORUM 0.5 and earlier allows remote attackers to remotely include and execute malicious PHP files via the subpath variablein (1) entete.php, (2) enteteacceuil.php, (3) index.php, or (4) newtopic.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Dobermann_forum | Benjamin_lefevre | 0.1 (including) | 0.1 (including) |
Dobermann_forum | Benjamin_lefevre | 0.2 (including) | 0.2 (including) |
Dobermann_forum | Benjamin_lefevre | 0.3 (including) | 0.3 (including) |
Dobermann_forum | Benjamin_lefevre | 0.4 (including) | 0.4 (including) |
Dobermann_forum | Benjamin_lefevre | 0.5 (including) | 0.5 (including) |