CVE Database
/

CVE-2003-0320

Back to search

CVE-2003-0320

Published: May 22, 2003

Modified: Aug 8, 2024

PUBLISHED

Description

header.php in ttCMS 2.3 and earlier allows remote attackers to inject arbitrary PHP code by setting the ttcms_user_admin parameter to "1" and modifying the admin_root parameter to point to a URL that contains a Trojan horse header.inc.php script.

VendorProductVersions

n/a

n/a

affected
n/a

References

20030517 Remote code execution in ttCMS <=v2.3
mailing-list
x_refsource_BUGTRAQ

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now