Ultimate PHP Board (UPB) 1.9 allows remote attackers to execute arbitrary PHP code with UPB administrator privileges via an HTTP request containing the code in the User-Agent header, which is executed when the administrator executes admin_iplog.php.
References
Link | Resource |
---|---|
http://f0kp.iplus.ru/bz/024.en.txt | Broken Link |
http://marc.info/?l=bugtraq&m=105379741528925&w=2 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2003-06-10T04:00:00
Updated: 2016-10-17T13:57:01
Reserved: 2003-06-10T00:00:00
Link: CVE-2003-0395
JSON object: View
NVD Information
Status : Analyzed
Published: 2003-07-02T04:00:00.000
Modified: 2024-02-13T16:14:50.843
Link: CVE-2003-0395
JSON object: View
Redhat Information
No data.
CWE