Vulnerabilities > CVE-2002-1887 - Remote File Include vulnerability in Gregory Kokanosky PHPmynewsletter 0.6.10

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
gregory-kokanosky
exploit available

Summary

PHP remote file inclusion vulnerability in customize.php for phpMyNewsletter 0.6.10 allows remote attackers to execute arbitrary PHP code via the l parameter.

Vulnerable Configurations

Part Description Count
Application
Gregory_Kokanosky
1

Exploit-Db

descriptionphpMyNewsLetter 0.6.10 Remote File Include Vulnerability. CVE-2002-1887. Webapps exploit for php platform
idEDB-ID:21905
last seen2016-02-02
modified2002-10-03
published2002-10-03
reporterfrog
sourcehttps://www.exploit-db.com/download/21905/
titlephpMyNewsLetter 0.6.10 - Remote File Include Vulnerability