CVE
- Id
- 28307
- CVE No.
- CVE-2007-4950
- Status
- Candidate
- Description
- ** DISPUTED ** PHP remote file inclusion vulnerability in form/db_form/employee.php in PHPortal 0.2.7 allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter. NOTE: this issue is disputed by CVE, since DOCUMENT_ROOT cannot be modified by an attacker.
- Phase
- Assigned (20070918)
- Votes
- None (candidate not yet proposed)
- Comments