vendor:
PHPFanBase
by:
CoLd Zero
7.5
CVSS
HIGH
Remote File Include
98
CWE
Product Name: PHPFanBase
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2006
PHPFanBase (protection.php) Remote File Include Vulnerability
The PHPFanBase (protection.php) file is vulnerable to remote file inclusion. The vulnerability allows an attacker to include a remote file, which can lead to remote code execution or other malicious activities.
Mitigation:
To mitigate this vulnerability, it is recommended to update the PHPFanBase script to a patched version that addresses the remote file inclusion vulnerability. Additionally, it is advised to implement proper input validation and sanitization to prevent arbitrary file inclusion.