PHPMyDesktop|arcade Index.PHP Local File Include Vulnerability
BID:18185
CVE-2006-2747 |Info
PHPMyDesktop|arcade Index.PHP Local File Include Vulnerability
| Bugtraq ID: | 18185 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 31 2006 12:00AM |
| Updated: | May 31 2006 10:33PM |
| Credit: | darkgod is credited with the discovery of this vulnerability. |
| Vulnerable: |
phpMyDesktop|arcade phpMyDesktop|arcade 1.0 |
| Not Vulnerable: | |
Discussion
PHPMyDesktop|arcade Index.PHP Local File Include Vulnerability
phpMyDesktop|arcade is prone to a local file-include vulnerability. This may allow unauthorized users to view files and to execute local scripts.
An attacker may also be able to execute arbitrary code by way of uploaded images.
phpMyDesktop|arcade is prone to a local file-include vulnerability. This may allow unauthorized users to view files and to execute local scripts.
An attacker may also be able to execute arbitrary code by way of uploaded images.
Exploit / POC
PHPMyDesktop|arcade Index.PHP Local File Include Vulnerability
This issue can be exploited through a web client.
This issue can be exploited through a web client.
Solution / Fix
PHPMyDesktop|arcade Index.PHP Local File Include Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected]
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected]
References
PHPMyDesktop|arcade Index.PHP Local File Include Vulnerability
References:
References:
- PhpMyDesktop|arcade Web Site (Fredi Bach)