Vulnerability Details CVE-2001-1468
PHP remote file inclusion vulnerability in checklogin.php in phpSecurePages 0.24 and earlier allows remote attackers to execute arbitrary PHP code by modifying the cfgProgDir parameter to reference a URL on a remote web server that contains the code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.2%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2001-1468
-
cpe:2.3:a:secure_reality:phpsecurepages:0.11_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.12_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.13_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.14_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.15_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.16_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.17_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.18_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.19_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.20_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.21_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.22_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.23_beta
-
cpe:2.3:a:secure_reality:phpsecurepages:0.24_beta