Mafia Blog .4 BETA does not properly protect the admin directory, which allows remote attackers to execute arbitrary PHP code by using writeinfo.php to inject the code into info.php.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2005-04-18T04:00:00
Updated: 2024-08-07T21:44:05.276Z
Reserved: 2005-04-18T00:00:00
Link: CVE-2005-1169

No data.

Status : Modified
Published: 2005-05-02T04:00:00.000
Modified: 2024-11-20T23:56:45.917
Link: CVE-2005-1169

No data.