vendor:
Supasite
by:
GolD_M = [Mahmood_ali]
7.5
CVSS
HIGH
Remote File Include
CWE
Product Name: Supasite
Affected Version From: v1.23b
Affected Version To: v1.23b
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2007
Supasite v1.23b <= Multiple Remote File Include Vulnerability
The Supasite v1.23b has a vulnerability that allows remote attackers to include arbitrary files. This can lead to remote code execution and unauthorized access to sensitive information.
Mitigation:
Apply the necessary patches and updates provided by the vendor. Make sure to sanitize user inputs and validate file inclusion requests to prevent this vulnerability.