PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability.
BID:28844
Info
PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability.
| Bugtraq ID: | 28844 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-1734 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 18 2008 12:00AM |
| Updated: | Apr 18 2008 09:07PM |
| Credit: | Toni Arnold, David Sveningsson, Michal Bartoszkiewicz, and Joseph |
| Vulnerable: |
Gentoo app-admin/php-toolkit 1.0 |
| Not Vulnerable: |
Gentoo app-admin/php-toolkit 1.0.1 |
Discussion
PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability.
PHP Tookit is prone to an information-disclosure and denial-of-service vulnerability.
An attacker can exploit this issue to obtain sensitive information or cause the webserver to stop, thus denying service to legitimate users.
PHP Tookit is prone to an information-disclosure and denial-of-service vulnerability.
An attacker can exploit this issue to obtain sensitive information or cause the webserver to stop, thus denying service to legitimate users.
Exploit / POC
PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability.
An attacker can exploit this issue by enticing an unsuspecting administrator to run 'emerge' or 'php-select'.
An attacker can exploit this issue by enticing an unsuspecting administrator to run 'emerge' or 'php-select'.
Solution / Fix
PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability.
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability.
References:
References:
- PHP Toolkit Homepage (PHP Toolkit)