First published: Wed Jun 18 2008(Updated: )
PHP remote file inclusion vulnerability in authentication/smf/smf.functions.php in Simple Machines phpRaider 1.0.6 and 1.0.7 allows remote attackers to execute arbitrary PHP code via a URL in the pConfig_auth[smf_path] parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Idefense Comraider | =1.0.6 | |
Idefense Comraider | =1.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2769 has a high severity level due to its potential to allow remote code execution.
To mitigate CVE-2008-2769, update your Simple Machines phpRaider to version 1.0.8 or later.
CVE-2008-2769 affects Simple Machines phpRaider versions 1.0.6 and 1.0.7.
CVE-2008-2769 is a remote file inclusion vulnerability.
Remote attackers can exploit CVE-2008-2769 by manipulating the pConfig_auth[smf_path] parameter.