CVE-2005-3335
CVE-2005-3335
PHP file inclusion vulnerability in bug_sponsorship_list_view_inc.php in Mantis 1.0.0RC2 and 0.19.2 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the t_core_path parameter.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://bugs.mantisbt.org/changelog_page.phphttp://secunia.com/advisories/16506http://secunia.com/advisories/16818http://secunia.com/advisories/17362http://secunia.com/advisories/17654http://secunia.com/secunia_research/2005-46/advisory/http://securityreason.com/securityalert/121http://securitytracker.com/id?1015110https://exchange.xforce.ibmcloud.com/vulnerabilities/22886http://www.debian.org/security/2005/dsa-905http://www.gentoo.org/security/en/glsa/glsa-200510-24.xmlhttp://www.securityfocus.com/bid/15212