Below are the Secunia Security Advisories rated as Highly Critical (or higher) from August 8, 2005.
-
Secunia Advisory 16347
SysCP Two Vulnerabilities
- Criticality: High
- Description: Christopher Kunz has reported two vulnerabilities in SysCP, which can be exploited by malicious people to gain knowledge of sensitive information or compromise a vulnerable system.
- Input passed to a certain parameter is not properly verified before being used to include a language file. This can be exploited to include arbitrary files from external resources.
- Input passed to the internal template engine is insufficiently sanitised, which can be exploited to inject arbitrary PHP code.
- Secunia Advisory: http://secunia.com/advisories/16347/