Vulnerabilities > CVE-2004-1431
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
FormMail.php 5.0, and possibly other versions, allows remote attackers to read arbitrary files via a full pathname in the ar_file (auto-reply) parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
References
- http://marc.info/?l=bugtraq&m=110460092827419&w=2
- http://marc.info/?l=bugtraq&m=110460092827419&w=2
- http://secunia.com/advisories/10815
- http://secunia.com/advisories/10815
- http://www.securityfocus.com/bid/12145
- http://www.securityfocus.com/bid/12145
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18724
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18724