This application requires Javascript for optimal performance.

Modernbill.Config.Remote.File.Inclusion

Release Date

Nov 24, 2011

Severity

low

Impact

Compromise of affected system.

Description

It indicates a possible exploit of a remote File Inclusion vulnerability in config.php, in Modernbill, that may allow remote attackers to execute arbitrary PHP code via a URL in the DIR parameter.

Affected Products

ModernBill ModernBill 1.6

Recommended Actions

Currently we are not aware of any solution for this issue.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-4034

Reference/s

http://www.securityfocus.com/bid/19335 (BugTraq)

Reference: VID-29885