RSS   Vulnerabilities for 'Awrate'   RSS

2007-10-19
 
CVE-2007-5599

CWE-94
 

 
Multiple PHP remote file inclusion vulnerabilities in awrate 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to (1) 404.php or (2) topbar.php, different vectors than CVE-2006-6368.

 
2006-12-07
 
CVE-2006-6368

 

 
PHP remote file inclusion vulnerability in login.php.inc in awrate 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to search.php.

 


Copyright 2017, cxsecurity.com