积极预防 及时发现
快速响应 力保恢复
在0.40之前的Phorecast PHP脚本允许远程攻击者通过设置includedir变量的HTT...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20011049 CVE编号:CVE-2001-1049 安全级别:中 漏洞中文描述: 在0.40之前的Phorecast PHP脚本允许远程攻击者通过设置includedir变量的HTTP请求从远程站点放入任意文件。 漏洞英文描述: Phorecast PHP script before 0.40 allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable. 漏洞参考: 系统类型:其他 漏洞类型:其他