6.8
CVSSv2

CVE-2008-3763

Published: 21/08/2008 Updated: 11/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Variable overwrite vulnerability in libsecure.php in Turnkey PHP Live Helper 2.0.1 and previous versions, when register_globals is enabled, allows remote malicious users to overwrite arbitrary variables related to the db config file. NOTE: this can be leveraged for code injection by overwriting the language file.

Vulnerable Product Search on Vulmon Subscribe to Product

turnkeywebtools php live helper 2.0

turnkeywebtools php live helper

Exploits

########################################################## # GulfTech Security Research August 16, 2008 ########################################################## # Vendor : Turnkey Web Tools, Inc # URL : wwwturnkeywebtoolscom # Version : PHP Live Helper <= 201 # Risk : Multiple Vulnerabilities ########################### ...