Variable overwrite vulnerability in common/config.php in Aztek Forum 4.00 allows remote attackers to overwrite arbitrary program variables and conduct other unauthorized activities, such as copying arbitrary files using index/common_actions.php, via vectors associated with extract operations on the (1) POST, (2) GET, (3) COOKIE, and (4) SERVER superglobal arrays.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-01-30T18:00:00
Updated: 2024-08-07T12:26:53.523Z
Reserved: 2007-01-30T00:00:00
Link: CVE-2007-0599
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-01-30T18:28:00.000
Modified: 2024-11-21T00:26:16.673
Link: CVE-2007-0599
Redhat
No data.