vendor:
sphider
by:
Li0n-PaL sTiLL Str1k3z y0u!!
9,3
CVSS
HIGH
Remote File Inclusion
98
CWE
Product Name: sphider
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2020
sphider Remote File Inclusion
Sphider is vulnerable to a Remote File Inclusion vulnerability. This vulnerability allows an attacker to include a remote file, usually through a malicious URL, and execute arbitrary code. This can be exploited to gain access to the server or to execute malicious code.
Mitigation:
The best way to mitigate this vulnerability is to ensure that user input is properly sanitized and validated. Additionally, it is important to ensure that the web server is configured to only allow access to files that are necessary for the application to function.