漏洞信息详情
PHPBB Advanced Quick Reply Hack远程文件包含漏洞
漏洞简介
phpBB Advanced Quick Reply Hack 1.0.0版本和1.1.0版本的quick_reply.php存在PHP远程文件包含漏洞。远程攻击者可以借助phpbb_root_path参数执行任意PHP代码。
漏洞公告
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] .
参考网址
来源: XF 名称: phpbb-quickreply-file-include(10617) 链接:http://xforce.iss.net/xforce/xfdb/10617 来源: BID 名称: 6173 链接:http://www.securityfocus.com/bid/6173 来源: BUGTRAQ 名称: 20021113 Code Injection in phpBB Advanced Quick Reply Mod 链接:http://archives.neohapsis.com/archives/bugtraq/2002-11/0188.html
受影响实体
- Phpbb Advanced_quick_reply_hack:1.0.0<!--2000-1-1-->
- Phpbb Advanced_quick_reply_hack:1.1.0<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...