CVE-2007-2199
CVE-2007-2199
PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as used in multiple products including (1) Joomla! 1.5.0 Beta, (2) N/X Web Content Management System (WCMS) 4.5, (3) CJG EXPLORER PRO 3.3, and (4) phpSiteBackup 0.1, allows remote attackers to execute arbitrary PHP code via a URL in the g_pcltar_lib_dir parameter.
Produtos afetados
n/a · n/aPoCs públicas encontradas — 3
cve_referencewww.exploit-db.com/exploits/3915não verificadocve_referencewww.exploit-db.com/exploits/3781não verificadocve_referencewww.exploit-db.com/exploits/4111não verificado⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.
Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://osvdb.org/34803http://osvdb.org/36009http://secunia.com/advisories/25230https://exchange.xforce.ibmcloud.com/vulnerabilities/33837https://exchange.xforce.ibmcloud.com/vulnerabilities/34273https://exchange.xforce.ibmcloud.com/vulnerabilities/35092https://www.exploit-db.com/exploits/3781https://www.exploit-db.com/exploits/3915https://www.exploit-db.com/exploits/4111http://www.attrition.org/pipermail/vim/2007-May/001618.htmlhttp://www.hackers.ir/advisories/joomla.htmlhttp://www.securityfocus.com/archive/1/466687/100/0/threaded