RSS   Vulnerabilities for 'Minibill'   RSS

2007-06-20
 
CVE-2007-3306

 

 
PHP remote file inclusion vulnerability in crontab/run_billing.php in MiniBill 1.2.5 allows remote attackers to execute arbitrary PHP code via a URL in the config[include_dir] parameter, a different vector than CVE-2006-4489.

 
2006-08-31
 
CVE-2006-4489

 

 
Multiple PHP remote file inclusion vulnerabilities in MiniBill 2006-07-14 (1.2.2) allow remote attackers to execute arbitrary PHP code via (1) a URL in the config[include_dir] parameter in actions/ipn.php or (2) an FTP path in the config[plugin_dir] parameter in include/initPlugins.php.

 

 >>> Vendor: Ultrize 2 Products
Minibill
Timesheet


Copyright 2024, cxsecurity.com

 

Back to Top