IrayoBlog.Irayofuncs.PHP.Remote.File.Inclusion

description-logoDescription

It indicates a possible exploit of a remote file inclusion vulnerability in inc/irayofuncs.php in IrayoBlog that may allow remote attackers to execute arbitrary PHP code via a URL in the irayodirhack parameter.

affected-products-logoAffected Products

Irayblog 0.2.4

Impact logoImpact

System compromise.

recomended-action-logoRecommended Actions

Refer to the vendor's web site for suggested workaround.
http://sourceforge.net/projects/irayoblog/.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)