Powered by PHPizabi v0.848b C1 HFP3 her

Searching…

www.exploit-db.com

PHPizabi 0.848b C1 HFP1-3 - Arbitrary File Upload - PHP ...

Mar 25, 2009 · } PHPizabi is prone to a vulnerability that lets remote attackers to upload and execute arbitrary script code. The uploaded file is saved into "/system/cache/temp/" directory and the filename has the fo...

exploit.company

Powered by PHPizabi v0.848b C1 HFP1 remote file upload

A vulnerability exists in PoweredbyPHPizabiv0.848bC1HFP1 which allows an attacker to upload a malicious file to the server. An attacker can register on the website, create an event, upload a malicious file, and then a...

nvd.nist.gov

NVD - CVE-2008-2018

Nov 20, 2024 · The AssignUser function in template.class.php in PHPizabi0.848bC1HFP3 performs unsafe macro expansions on strings delimited by ' {' and '}' characters, which allows remote authenticated users to obtain ...

qkl.seebug.org

PHPizabi v0.848b C1 HFP1-3 Remote Command Execution Exploit

To quote phpizabi homepage on the first command execution exploit: A security vulnerability recently discovered in PHPizabi originally reported by a local administrator has been confirmed and published by the National...

vulners.com

PHPizabi 0.848b C1 HFP1-3 - Remote Command Execution

Mar 23, 2009 · PHPizabi0.848bC1HFP1-3 - Remote Command Execution 2009-03-23T00:00:00 prion NVD Unrestricted file upload 2008-07-21T16:41:00 packetstorm exploit PHPizabi0.848bC1HFP1-3 Command Execution 2009-03-24T00:00...

cvefeed.io

CVE-2008-2018 - PHPizabi Web Application Info Disclosure

Apr 30, 2008 · The AssignUser function in template.class.php in PHPizabi0.848bC1HFP3 performs unsafe macro expansions on strings delimited by ' {' and '}' characters, which allows remote authenticated users to obtain ...

devhub.checkmarx.com

Exposure of Sensitive Information to an Unauthorized Actor

The AssignUser function in template.class.php in PHPizabi0.848bC1HFP3 performs unsafe macro expansions on strings delimited by ' {' and '}' characters, which allows remote authenticated users to obtain sensitive infor...