CVE-2004-0285

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/11/2004
Last modified:
20/11/2024

Description

PHP remote file inclusion vulnerabilities in include/footer.inc.php in (1) AllMyVisitors, (2) AllMyLinks, and (3) AllMyGuests allow remote attackers to execute arbitrary PHP code via a URL in the _AMVconfig[cfg_serverpath] parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:allmyguests_project:allmyguests:0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:allmyguests_project:allmyguests:0.3:*:*:*:*:*:*:*
cpe:2.3:a:allmyguests_project:allmyguests:0.4:*:*:*:*:*:*:*
cpe:2.3:a:allmyguests_project:allmyguests:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.3:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.4:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.4.4:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.4.9:*:*:*:*:*:*:*
cpe:2.3:a:allmylinks_project:allmylinks:0.5:*:*:*:*:*:*:*
cpe:2.3:a:allmyvisitors_project:allmyvisitors:0.3:*:*:*:*:*:*:*
cpe:2.3:a:allmyvisitors_project:allmyvisitors:0.4:*:*:*:*:*:*:*