Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0043

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2001-0043
Last Modified 05 Sep 2008 04:23:07
Published 16 Feb 2001 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-0043

Summary

phpGroupWare before 0.9.7 allows remote attackers to execute arbitrary PHP commands by specifying a malicious include file in the phpgw_info parameter of the phpgw.inc.php program.

Vulnerable Systems

Application

  • Phpgroupware 0.9.6


References

BID - 2069

MISC - http://sourceforge.net/project/shownotes.php?release_id=17604

BUGTRAQ - 20001206 (SRADV00006) Remote command execution vulnerabilities in phpGroupWare

XF - phpgroupware-include-files

OSVDB - 1682


Last Updated: 27 May 2016 10:36:06