RULE(RULE ID:322297)

Rule General Information
Release Date: 2019-07-04
Rule Name: DBGuestBook dbs_base_path Parameter PHP File Include Vulnerability (CVE-2007-1165)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple PHP remote file inclusion vulnerabilities in DBGuestbook 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the dbs_base_path parameter to (1) utils.php, (2) guestbook.php, or (3) views.php in includes/.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:22658
ExploitDB:3354
OSVDB:33493
Solutions
Please contact the software vendor to update the software patch.