Security Advisory

CVE-2007-4951

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-09-18 20:00:00
Last updated 2024-08-07 15:17:27
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP remote file inclusion vulnerability in sample.php in YaPiG 0.95b allows remote attackers to execute arbitrary PHP code via a URL in the YAPIG_PATH parameter. NOTE: this issue has been disputed by CVE, since YAPIG_PATH is defined before use