RETIRED: PHProg Multiple Vulnerabilities
BID:19957
CVE-2006-4753 | CVE-2006-4754 |Info
RETIRED: PHProg Multiple Vulnerabilities
| Bugtraq ID: | 19957 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Sep 11 2006 12:00AM |
| Updated: | Sep 12 2006 09:22PM |
| Credit: | Discovery is credited to cdg393. |
| Vulnerable: |
PHPProg PHProg 1.0 |
| Not Vulnerable: | |
Discussion
RETIRED: PHProg Multiple Vulnerabilities
PHProg is prone to multiple vulnerabilities. The issues result from insufficient sanitization of user-supplied data and may allow an attacker to carry out cross-site scripting and local file-include attacks.
Version 1.0 of PHProg is reported vulnerable; other versions may be affected as well.
NOTE: This BID is being retired because it is a duplicate of BID 19942.
PHProg is prone to multiple vulnerabilities. The issues result from insufficient sanitization of user-supplied data and may allow an attacker to carry out cross-site scripting and local file-include attacks.
Version 1.0 of PHProg is reported vulnerable; other versions may be affected as well.
NOTE: This BID is being retired because it is a duplicate of BID 19942.
Exploit / POC
RETIRED: PHProg Multiple Vulnerabilities
An exploit is not required.
Proof-of-concept URIs for each issue are available.
An exploit is not required.
Proof-of-concept URIs for each issue are available.
Solution / Fix
RETIRED: PHProg Multiple Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
RETIRED: PHProg Multiple Vulnerabilities
References:
References:
- cdg393 Advisory (cdg393)
- PHProg Homepage (PHProg)