HTTP: D-Forum Remote PHP File Include
This signature detects attempts to exploit a known vulnerability against D-Forum. D-Forum versions 1.0 through 1.11 are vulnerable. Attackers cab exploit header.php3 and footer.php3 to include PHP code from a remote host and execute arbitrary commands.
Extended Description
D-Forum is prone to an issue which may allow remote attackers to include files located on remote servers. This issue is present in the /includes/header.php3 and /includes/footer.php3 scripts. Under some circumstances, it is possible for remote attackers to influence the include path for the header and footer files to point to an external file on a remote server by manipulating some URI parameters.
Affected Products
Adalis_informatique d-forum
References
BugTraq: 6879
URL: http://securityvulns.com/docs4100.html http://www.securitytracker.com/alerts/2003/Feb/1006115.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Adalis_informatique