WebProvence.Spaw.control.class.PHP.Remote.File.Inclusion

description-logoDescription

A PHP remote file inclusion vulnerability in admin/editeur/spaw_control.class.php in Web Provence SL_Site 1.0 and earlier, allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter.

affected-products-logoAffected Products

Web-Provence SL_site 1.0

Impact logoImpact

Execute arbitrary PHP code.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor-supplied patches for this issue.

Coverage

IPS (Regular DB)
IPS (Extended DB)