PHP Code Execution and Multiple XSS in ShoutLIVE

Summary for PHP Code Execution and Multiple XSS in ShoutLIVE

Vulnerability
PHP Code Execution and Multiple XSS in ShoutLIVE
Discovered
2006.02.24
Last Update
2006.03.06 Exploitation code published
ID
EV0087
CVE
CVE-2006-0940 CVE-2006-0941
Risk Level
high
Type
PHP Code Execution
Status
Unpatched. No reply from developer(s)
Vendor
n/a
Vulnerable Software
ShoutLIVE
Version
1.1.0
PoC/Exploit
Available
Solution
Not available
Discovered by
Aliaksandr Hartsuyeu (eVuln.com)

Order Source Code Analysis made by eVuln

Protect against attacks by source code review of a site made by eVuln team.The work will be done by specialists in website security.