Security Advisory
CVE-2003-1240
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
PHP remote file inclusion vulnerability in CuteNews 0.88 allows remote attackers to execute arbitrary PHP code via a URL in the cutepath parameter in (1) shownews.php, (2) search.php, or (3) comments.php.