Vulnerabilities > CVE-2004-1421 - Unspecified vulnerability in WHM Autopilot 2.4.5/2.4.6/2.4.6.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple PHP remote file inclusion vulnerabilities (1) step_one.php, (2) step_one_tables.php, (3) step_two_tables.php in WHM AutoPilot 2.4.6.5 and earlier allow remote attackers to execute arbitrary PHP code by modifying the server_inc parameter to reference a URL on a remote web server that contains the code.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description | WHM.AutoPilot < 2.4.6.5 - Multiple Vulnerabilities. CVE-2004-1420,CVE-2004-1421,CVE-2004-1422. Webapps exploit for PHP platform |
id | EDB-ID:43818 |
last seen | 2018-01-24 |
modified | 2014-12-27 |
published | 2014-12-27 |
reporter | Exploit-DB |
source | https://www.exploit-db.com/download/43818/ |
title | WHM.AutoPilot < 2.4.6.5 - Multiple Vulnerabilities |
Nessus
NASL family | CGI abuses |
NASL id | WHM_AUTOPILOT_FILE_INCLUDE.NASL |
description | The remote web server is running WHM AutoPilot, a script designed to administer a web-hosting environment. The remote version of this software is vulnerable to various flaws that may allow an attacker to execute arbitrary commands on the remote host, obtain information about the remote host |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 16070 |
published | 2004-12-28 |
reporter | This script is Copyright (C) 2004-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/16070 |
title | WHM AutoPilot < 2.5.20 Multiple Remote Vulnerabilities |
code |
|
References
- http://marc.info/?l=bugtraq&m=110425620105529&w=2
- http://marc.info/?l=bugtraq&m=110425620105529&w=2
- http://marc.info/?l=bugtraq&m=110451997904494&w=2
- http://marc.info/?l=bugtraq&m=110451997904494&w=2
- http://secunia.com/advisories/13673
- http://secunia.com/advisories/13673
- http://securitytracker.com/id?1012707
- http://securitytracker.com/id?1012707
- http://www.gulftech.org/?node=research&article_id=00059-12272004
- http://www.gulftech.org/?node=research&article_id=00059-12272004
- http://www.osvdb.org/12695
- http://www.osvdb.org/12695
- http://www.securityfocus.com/bid/12119
- http://www.securityfocus.com/bid/12119
- http://www.whmautopilot.com/forum/lofiversion/index.php/t6785.html
- http://www.whmautopilot.com/forum/lofiversion/index.php/t6785.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18699
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18699