RSS   Vulnerabilities for 'Com extensions'   RSS

2007-03-09
 
CVE-2007-1382

 

 
The PHP COM extensions for PHP on Windows systems allow context-dependent attackers to execute arbitrary code via a WScript.Shell COM object, as demonstrated by using the Run method of this object to execute cmd.exe, which bypasses PHP's safe mode.

 

 >>> Vendor: PHP 25 Products
PHP
Php fi
Phorum
Phpsquidpass
PEAR
Blog cms
Pear archive tar
Comoblog
Php script index
Directory listing script
Animated smiley generator
Errordocs
Ar memberscript
BLOQ
Com extensions
Mysql extension
Mysql banner exchange
F1 maxs file uploader
Xhprof
Php perl hot links
Pecl http
Imagick
Ext-http
Archive tar
Pearweb


Copyright 2024, cxsecurity.com

 

Back to Top