First published: Wed Aug 26 2009(Updated: )
PHP remote file inclusion vulnerability in search_wA.php in OpenPro 1.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the LIBPATH parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Openpetra | =1.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-7087 is classified as a high severity vulnerability due to its potential to allow remote code execution.
To fix CVE-2008-7087, update to a version of OpenPro that has patched this remote file inclusion vulnerability.
CVE-2008-7087 affects OpenPro version 1.3.1.
CVE-2008-7087 is a remote file inclusion vulnerability that allows execution of arbitrary PHP code.
Yes, CVE-2008-7087 can be exploited without authentication, allowing unauthenticated attackers to execute arbitrary PHP code.