xmb.php in XMB Forum 1.9.1 extracts and defines all provided variables, which allows remote attackers to modify arbitrary server variables such as _SERVER[REMOTE_ADDR].
References
Configurations
History
No history.
Information
Published : 2005-08-16 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-2574
Mitre link : CVE-2005-2574
CVE.ORG link : CVE-2005-2574
JSON object : View
Products Affected
xmb_forum
- xmb
CWE