This application requires Javascript for optimal performance.

VSNewsSystem.Show.News.Inc.PHP.Remote.File.Inclusion

Release Date

Jan 05, 2012

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates a possible attack attempt against a remote File Include vulnerability in VS-News-System.

The vulnerability is caused because the vulnerable application fails to sufficiently sanitize user-supplied input. Successful exploit may allow an attacker to compromise the application and the underlying system; other attacks are also possible.

Affected Products

VirtualSystem VS-News-System 1.2.1

Recommended Actions

Currently we are not aware of any vendor-supplied patches for this issue.

Coverage

IPS
VCM

Reference/s

http://www.securityfocus.com/bid/22592 (BugTraq)

Reference: VID-30535