PHP Code Execution and Multiple XSS in FreeForum

Summary for PHP Code Execution and Multiple XSS in FreeForum

Vulnerability
PHP Code Execution and Multiple XSS in FreeForum
Discovered
2006.02.27
Last Update
2006.03.09 Exploitation code published
ID
EV0089
CVE
CVE-2006-0957 CVE-2006-0958
Risk Level
high
Type
Multiple Vulnerabilities
Status
Patched
Vendor
ZoneO-Soft
Vulnerable Software
FreeForum
Version
1.2
PoC/Exploit
Available
Solution
Available
Discovered by
Aliaksandr Hartsuyeu (eVuln.com)

Order Source Code Analysis

Prevent hacker attacks by source code review of your site made by eVuln team.The work will be done by experts in website security.