CVE Database
/

CVE-2001-0854

Back to search

CVE-2001-0854

Published: Nov 22, 2001

Modified: Aug 8, 2024

PUBLISHED

Description

PHP-Nuke 5.2 allows remote attackers to copy and delete arbitrary files by calling case.filemanager.php with admin.php as an argument, which sets the $PHP_SELF variable and makes it appear that case.filemanager.php is being called by admin.php instead of the user.

VendorProductVersions

n/a

n/a

affected
n/a

References

3510
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now