First published: Thu Jan 25 2007(Updated: )
PHP remote file inclusion vulnerability in defines.php in WebChat 0.77 allows remote attackers to execute arbitrary PHP code via a URL in the WEBCHATPATH parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webchat.org Webchat | =0.77 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0485 has been categorized as a critical vulnerability due to its ability to allow remote code execution.
To fix CVE-2007-0485, upgrade to a version of WebChat beyond 0.77 that does not contain this vulnerability.
CVE-2007-0485 facilitates remote file inclusion attacks, allowing attackers to execute arbitrary PHP code.
CVE-2007-0485 specifically affects WebChat version 0.77.
Any user or administrator running WebChat version 0.77 is at risk of exploitation from CVE-2007-0485.