Check Point Reference: | CPAI-2014-0772 |
Date Published: | 3 Feb 2014 |
Severity: | Critical |
Last Updated: | Wednesday 01 January, 2014 |
Source: | CVE-2001-1235 |
Protection Provided by: | |
Who is Vulnerable? | |
Vulnerability Description | A code execution vulnerability has been reported in PSlash Web Portal. A remote attacker could trigger this vulnerability by including files from remote web sites using an HTTP request that modifies the includedir variable. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the affected system. |