16 Fév 2012
CVE-2012-1200 Vulnerability
Multiple PHP remote file inclusion vulnerabilities in Nova CMS allow remote attackers to execute arbitrary PHP code via a URL in the (1) fileType parameter to optimizer/index.php, (2) id parameter to administrator/modules/moduleslist.php, (3) filename parameter to includes/function/gets.php, or (4) conf[blockfile] parameter to includes/function/usertpl.php. (CVSS:7.5) (Last Update:2012-02-24)
Vulnerability Details : (1 public exploit) Multiple PHP remote file inclusion vulnerabilities in Nova CMS allow remote attackers to execute arbitrary PHP code via a URL in the (1) fileType parameter to optimizer/index.php, (2) id parameter to administrator/modules/moduleslist.php, (3) filename parameter to includes/function/gets.php, or (4) conf[blockfile] parameter to includes/function/usertpl.php. Publish Date : 2012-02-17 Last Update Date : 2012-02-24 - CVSS Scores & Vulnerability Types
- Products Affected By CVE-2012-1200
- Number Of Affected Versions By Product
- References For CVE-2012-1200
| |||||||||||||||||||||||||||||||||||||||||||||||||||||
- Metasploit Modules Related To CVE-2012-1200There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information) |