Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:PHP:DFORUM-PHP-INC

Severity

High

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

d-forum dforum php http include

Release Date

2003/04/22

Update Number

1213

Supported Platforms

di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: D-Forum Remote PHP File Include


This signature detects attempts to exploit a known vulnerability against D-Forum. D-Forum versions 1.0 through 1.11 are vulnerable. Attackers cab exploit header.php3 and footer.php3 to include PHP code from a remote host and execute arbitrary commands.

Extended Description

D-Forum is prone to an issue which may allow remote attackers to include files located on remote servers. This issue is present in the /includes/header.php3 and /includes/footer.php3 scripts. Under some circumstances, it is possible for remote attackers to influence the include path for the header and footer files to point to an external file on a remote server by manipulating some URI parameters.

Affected Products

  • Adalis Informatique D-Forum 1.0.0
  • Adalis Informatique D-Forum 1.10.0
  • Adalis Informatique D-Forum 1.11.0

References

  • BugTraq: 6879
  • URL: http://securityvulns.com/docs4100.html
  • URL: http://www.securitytracker.com/alerts/2003/Feb/1006115.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out