This application requires Javascript for optimal performance.

WMNews.Base.Datapath.Remote.File.Inclusion

Release Date

Nov 03, 2011

Severity

high

Impact

System Compromise: Remote code execution.

Description

This indicates a possible attempt to exploit a File Inclusion vulnerability in Mikael Software WMNews.

The vulnerability may allow a remote attacker to execute arbitrary code by sending a specially crafted URL.

Affected Products

Mikael Software WMNews 0.2a

Recommended Actions

Currently we are not aware of any vendor supplied patches for this issue.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-3928

Reference/s

http://www.securityfocus.com/bid/19187 (BugTraq)

Reference: VID-29618