Vulnerabilities > CVE-2007-0585 - Unspecified vulnerability in Webfwlog

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
webfwlog
exploit available

Summary

include/debug.php in Webfwlog 0.92 and earlier, when register_globals is enabled, allows remote attackers to obtain source code of files via the conffile parameter. NOTE: some of these details are obtained from third party information. It is likely that this issue can be exploited to conduct directory traversal attacks.

Vulnerable Configurations

Part Description Count
Application
Webfwlog
1

Exploit-Db

descriptionWebfwlog <= 0.92 (debug.php) Remote File Disclosure Vulnerability. CVE-2007-0585. Webapps exploit for php platform
fileexploits/php/webapps/3222.txt
idEDB-ID:3222
last seen2016-01-31
modified2007-01-29
platformphp
port
published2007-01-29
reporterGoLd_M
sourcehttps://www.exploit-db.com/download/3222/
titleWebfwlog <= 0.92 debug.php Remote File Disclosure Vulnerability
typewebapps