PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability
BID:20844
Info
PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability
| Bugtraq ID: | 20844 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 01 2006 12:00AM |
| Updated: | Nov 02 2006 12:42AM |
| Credit: | Discovered by Kacper. |
| Vulnerable: |
Spider Friendly Spider Friendly 1.3.10 |
| Not Vulnerable: | |
Discussion
PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability
phpBB Spider Friendly is prone to a remote file-include vulnerability.
A remote attacker may exploit this issue to execute server-side script code, which may lead to a remote compromise of the underlying computer. This would occur in the context of the affected webserver. Other attacks may be possible as well.
phpBB Spider Friendly 1.3.10 is reported vulnerable; other versions may be affected as well.
phpBB Spider Friendly is prone to a remote file-include vulnerability.
A remote attacker may exploit this issue to execute server-side script code, which may lead to a remote compromise of the underlying computer. This would occur in the context of the affected webserver. Other attacks may be possible as well.
phpBB Spider Friendly 1.3.10 is reported vulnerable; other versions may be affected as well.
Exploit / POC
PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability
Attackers can use a web client to exploit this issue.
Attackers can use a web client to exploit this issue.
Solution / Fix
PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
PHPBB Spider Friendly Module PHPBB_ROOT_PATH Parameter Remote File Include Vulnerability
References:
References:
- Spider Friendly (Spider Friendly)