PHP-инклюдинг в OpenDock Easy Blog

Дата публикации:
Дата изменения:
Всего просмотров:
Наличие исправления:
Количество уязвимостей:
CVSSv2 рейтинг:
Нет данных
Вектор эксплуатации:
Компрометация системы
Нет данных
Наличие эксплоита:
Нет данных
Уязвимые продукты:
OpenDock Easy Blog 1.x
Уязвимые версии: OpenDock Easy Blog 1.4, возможно другие версии.

Уязвимость позволяет удаленному пользователю выполнить произвольный PHP сценарий на целевой системе.

Уязвимость существует из-за недостаточной обработки входных данных в параметре "doc_directory" в различных сценариях. Удаленный пользователь может выполнить произвольный PHP сценарий на целевой системе с привилегиями Web сервера. Для удачной эксплуатации уязвимости опция "register_globals" должна быть включена в конфигурационном файле PHP. Пример:


URL производителя:

Решение: Способов устранения уязвимости не существует в настоящее время.

Ссылки: OpenDock Easy Blog <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability

или введите имя

07-10-2016 17:36:25
trading di opzioni binarie What are binary options in addition to make all of them? binary options is normally 1 risky investing because of on line business. That investor determines the specific type of house that acquisitions in addition to is what determines whether the price could escalate or drop. This may be a unsafe way, to create need to for some reason forcast tomorrow applying different plans, in addition to since clairvoyance can be a uncommon gift, you may eliminate a lot. But also get a great deal. Two ways binary options the country's company name as a result of a simple approach to making an investment. As with binary devices are just the ones and additionally zeroes, and so the options may be certain sole decreases together with grows. This is the main change relating to all of them and additionally usual having fun with this stock game, at which the application earning solely to the boost with the asking price of a great house. A lot of these may just be various. You may pick the foreign money, that is the relation within the costs in the two foreign currencies. By way of example, if the dinar tone relative to north america . dollar, and the angel investor nearly as forecast : generates. Another investment may very well be raw materials like silver, precious metal or simply engine oil. Additionally you can pick most well-known of all stock shares and simultaneously spiders. The following, the surgery is comparable to a regular trading that stock exchange, while using improvement which you could additionally earn money at is reduced in talk about fees. What exactly, at which adequate with who That binary options can be bought picked broker agents. Around just 5 pct. People commit profit generates the idea. Even so sanctioned improved probability of profitable compared to a Aileron. Nonetheless, so as to get paid some extra cash with such strategy of investment to consider your solutions associated with forecasting stock market.
0 |