Remote File Inclusion Vulnerability in Dobermann FORUM by Benjamin Lefevre
CVE-2002-2200

Currently unrated

Key Information:

Vendor
CVE Published:
31 December 2002

What is CVE-2002-2200?

The Dobermann FORUM application versions 0.5 and earlier are susceptible to a remote file inclusion vulnerability. This issue allows an attacker to include and execute arbitrary PHP files by manipulating the 'subpath' variable in specific PHP scripts, including entete.php, enteteacceuil.php, index.php, and newtopic.php. As a result, attackers could compromise the integrity of the system, execute malicious code, and potentially gain unauthorized access to sensitive information. It is crucial for users to update to the latest software version and implement necessary mitigating strategies to protect their applications.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.