Vulnerabilities > CVE-2004-2018 - Unspecified vulnerability in Francisco Burzi PHP-Nuke
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN francisco-burzi
exploit available
Summary
PHP remote file inclusion vulnerability in index.php in Php-Nuke 6.x through 7.3 allows remote attackers to execute arbitrary PHP code by modifying the modpath parameter to reference a URL on a remote web server that contains the code.
Vulnerable Configurations
Exploit-Db
description | PHP-Nuke 6.x/7.x Modpath Parameter Potential File Include Vulnerability. CVE-2004-2018. Webapps exploit for php platform |
id | EDB-ID:24127 |
last seen | 2016-02-02 |
modified | 2004-05-17 |
published | 2004-05-17 |
reporter | waraxe |
source | https://www.exploit-db.com/download/24127/ |
title | PHP-Nuke 6.x/7.x Modpath Parameter Potential File Include Vulnerability |
References
- http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0870.html
- http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0870.html
- http://marc.info/?l=bugtraq&m=108482888621896&w=2
- http://marc.info/?l=bugtraq&m=108482888621896&w=2
- http://secunia.com/advisories/11625
- http://secunia.com/advisories/11625
- http://www.osvdb.org/6222
- http://www.osvdb.org/6222
- http://www.securityfocus.com/bid/10365
- http://www.securityfocus.com/bid/10365
- http://www.waraxe.us/index.php?modname=sa&id=29
- http://www.waraxe.us/index.php?modname=sa&id=29
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16218
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16218