Mafia Blog .4 BETA does not properly protect the admin directory, which allows remote attackers to execute arbitrary PHP code by using writeinfo.php to inject the code into info.php.
References
Configurations
History
20 Nov 2024, 23:56
Type | Values Removed | Values Added |
---|---|---|
References | () http://chrisnowak.org/projects/mafia/ - | |
References | () http://marc.info/?l=bugtraq&m=111359511826958&w=2 - | |
References | () http://www.securityfocus.com/bid/13194 - |
Information
Published : 2005-05-02 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-1169
Mitre link : CVE-2005-1169
CVE.ORG link : CVE-2005-1169
JSON object : View
Products Affected
mafia
- mafia_blog
CWE