Intrusion Prevention

OpenX.PHP.Upload.Code.Execution

Description

This indicates an attack attempt against a code execution vulnerability in OpenX adserver.
The vulnerability is caused by an error when the vulnerable software handles file upload. It allows a remote attacker to execute arbitrary code via sending a crafted web page.

Affected Products

OpenX adserver 2.8.1 and earlier

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Update to latest version 2.8.2.

CVE References

CVE-2009-4098