First published: Tue Nov 20 2007(Updated: )
PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers to execute arbitrary PHP code via a URL in an unspecified parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SWSoft Confixx | =3.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6042 is classified as a high-severity vulnerability due to its potential to allow arbitrary PHP code execution.
To fix CVE-2007-6042, you should upgrade SWSoft Confixx Professional to a version that is not vulnerable, ideally to a patched release.
CVE-2007-6042 allows remote attackers to execute arbitrary PHP code, which can lead to full system compromise.
CVE-2007-6042 specifically affects SWSoft Confixx Professional version 3.2.1.
Yes, there are known exploits for CVE-2007-6042 that leverage the remote file inclusion vulnerability to execute unauthorized code.