Remote File Inclusion Vulnerability in Dobermann FORUM by Benjamin Lefevre
CVE-2002-2200
Currently unrated
What is CVE-2002-2200?
The Dobermann FORUM application versions 0.5 and earlier are susceptible to a remote file inclusion vulnerability. This issue allows an attacker to include and execute arbitrary PHP files by manipulating the 'subpath' variable in specific PHP scripts, including entete.php, enteteacceuil.php, index.php, and newtopic.php. As a result, attackers could compromise the integrity of the system, execute malicious code, and potentially gain unauthorized access to sensitive information. It is crucial for users to update to the latest software version and implement necessary mitigating strategies to protect their applications.
