|
Family: CGI abuses --> Category: attack
BLnews code injection Vulnerability Scan
Vulnerability Scan Summary Searches for the existence of objects.inc.php4
Detailed Explanation for this Vulnerability Test
It is possible to make the remote host include php files hosted
on a third party server using the BLnews CGI suite which is installed.
A possible hacker may use this flaw to inject arbitrary code in the remote
host and gain a shell with the rights of the web server.
Solution : Upgrade to the latest version
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|