CVE Database
/

CVE-2010-1946

Back to search

CVE-2010-1946

Published: May 18, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple PHP remote file inclusion vulnerabilities in openMairie Openregistrecil 1.02, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the path_om parameter to (1) autorisation_normale.class.php, (2) collectivite.class.php, (3) dossier.class.php, (4) norme_simplifiee.class.php, (5) registre.class.php, (6) autorisation_unique.class.php, (7) demande_avis.class.php, (8) droit.class.php, (9) organisme.class.php, (10) service.class.php, (11) categorie_donnee.class.php, (12) destinataire.class.php, (13) profil.class.php, (14) tabdyn_visu.class.php, (15) categorie_personne.class.php, (16) dispense.class.php, (17) modificatif.class.php, (18) reference.class.php, and (19) utilisateur.class.php in obj/.

VendorProductVersions

n/a

n/a

affected
n/a

References

63955
vdb-entry
x_refsource_OSVDB
63954
vdb-entry
x_refsource_OSVDB
63959
vdb-entry
x_refsource_OSVDB
63947
vdb-entry
x_refsource_OSVDB
63949
vdb-entry
x_refsource_OSVDB
63953
vdb-entry
x_refsource_OSVDB
63962
vdb-entry
x_refsource_OSVDB
63951
vdb-entry
x_refsource_OSVDB
63961
vdb-entry
x_refsource_OSVDB
63946
vdb-entry
x_refsource_OSVDB
63945
vdb-entry
x_refsource_OSVDB
39534
third-party-advisory
x_refsource_SECUNIA
39611
vdb-entry
x_refsource_BID
63956
vdb-entry
x_refsource_OSVDB
63950
vdb-entry
x_refsource_OSVDB
63960
vdb-entry
x_refsource_OSVDB
63957
vdb-entry
x_refsource_OSVDB
63952
vdb-entry
x_refsource_OSVDB
63963
vdb-entry
x_refsource_OSVDB
63958
vdb-entry
x_refsource_OSVDB
12313
exploit
x_refsource_EXPLOIT-DB
63948
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now