RSS   Vulnerabilities for 'Com extensions'   RSS

2007-03-09
 
CVE-2007-1382

 

 
The PHP COM extensions for PHP on Windows systems allow context-dependent attackers to execute arbitrary code via a WScript.Shell COM object, as demonstrated by using the Run method of this object to execute cmd.exe, which bypasses PHP's safe mode.

 

 >>> Vendor: PHP 21 Products
PHP
Php fi
Phpsquidpass
PEAR
Comoblog
Php script index
Directory listing script
Animated smiley generator
Errordocs
Phorum
Blog cms
Ar memberscript
BLOQ
Com extensions
Mysql extension
Mysql banner exchange
F1 maxs file uploader
Xhprof
Php perl hot links
Pecl http
Pear archive tar


Copyright 2019, cxsecurity.com

 

Back to Top