vendor:
Beehive CMS
by:
Kw3[R]Ln
N/A
CVSS
N/A
Remote File Include
CWE
Product Name: Beehive CMS
Affected Version From:
Affected Version To: latest version
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Beehive CMS ([header]) Remote File Include Vulnerabilities
Variable $header not sanitized. When register_globals=on, an attacker can exploit this vulnerability with a simple PHP injection script.
Mitigation:
Declare variable $header.