Direct static code injection vulnerability in acp/savenews.php in Sciurus Hosting Panel, possibly 2.0.3, allows remote attackers to inject arbitrary PHP code via the filecontents parameter, which can be executed by accessing includes/news.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-11-22T00:00:00
Updated: 2024-08-07T15:54:26.499Z
Reserved: 2007-11-21T00:00:00
Link: CVE-2007-6082
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-11-22T00:46:00.000
Modified: 2024-11-21T00:39:19.023
Link: CVE-2007-6082
Redhat
No data.