|
|||
Rule General Information |
---|
Release Date: | 2019-07-04 | |
Rule Name: | DBGuestBook dbs_base_path Parameter PHP File Include Vulnerability (CVE-2007-1165) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Multiple PHP remote file inclusion vulnerabilities in DBGuestbook 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the dbs_base_path parameter to (1) utils.php, (2) guestbook.php, or (3) views.php in includes/. | |
Impact: | An attacker could exploit this vulnerability to have unspecified effect. | |
Affected OS: | Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others | |
Reference: | SecurityFocusBID:22658 ExploitDB:3354 OSVDB:33493 |
|
Solutions |
---|
Please contact the software vendor to update the software patch. |