PHP Live! Unspecified Remote Configuration File Include Vulnerability
BID:11863
Info
PHP Live! Unspecified Remote Configuration File Include Vulnerability
| Bugtraq ID: | 11863 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 08 2004 12:00AM |
| Updated: | Dec 08 2004 12:00AM |
| Credit: | This vulnerability was announced by the vendor. |
| Vulnerable: |
PHP Live! PHP Live! 2.8.1 |
| Not Vulnerable: |
PHP Live! PHP Live! 2.8.2 |
Discussion
PHP Live! Unspecified Remote Configuration File Include Vulnerability
PHP Live! is reported prone to an unspecified vulnerability. It is reported that the vulnerability may be exploited to include arbitrary directories and configuration files into a target installation.
It is conjectured that a remote attacker may exploit this vulnerability to load arbitrary configuration files, this may result in the compromise of the PHP Live site or the underlying computer.
PHP Live! up to and including version 2.8.1 are reported prone to this vulnerability.
PHP Live! is reported prone to an unspecified vulnerability. It is reported that the vulnerability may be exploited to include arbitrary directories and configuration files into a target installation.
It is conjectured that a remote attacker may exploit this vulnerability to load arbitrary configuration files, this may result in the compromise of the PHP Live site or the underlying computer.
PHP Live! up to and including version 2.8.1 are reported prone to this vulnerability.
Exploit / POC
PHP Live! Unspecified Remote Configuration File Include Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
PHP Live! Unspecified Remote Configuration File Include Vulnerability
Solution:
The vendor has released an update to address this issue. Customers are advised to contact the vendor for further information.
Solution:
The vendor has released an update to address this issue. Customers are advised to contact the vendor for further information.
References
PHP Live! Unspecified Remote Configuration File Include Vulnerability
References:
References:
- PHP Live! 2.8.2 (Default) (PHP Live!)
- PHP Live! Homepage (PHP Live!)