vendor:
PowerPHPBoard
by:
Digital Security Research Group [DSecRG]
N/A
CVSS
N/A
Multiple Local File Include
Unknown
CWE
Product Name: PowerPHPBoard
Affected Version From: 1.00b
Affected Version To: 1.00b
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Unknown
2008
DSECRG-08-021
PowerPHPBoard has multiple local file include vulnerabilities. The vulnerabilities exist in the script footer.inc.php. To exploit these vulnerabilities, the REGISTER_GLOBALS option must be ON in the PHP config file. The vulnerabilities allow an attacker to include arbitrary files from the server.
Mitigation:
No solution or mitigation provided