Security Advisory

CVE-2009-4739

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-03-26 20:00:00
Last updated 2024-08-07 07:17:24
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP remote file inclusion vulnerability in index.php in SkaDate Dating allows remote attackers to execute arbitrary PHP code via a URL in the language_id parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences.