MidnightBSD

Advisories for emergenices_personnel_information_system

CVE-2001-1052 HIGH

Empris PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
emergenices_personnel_information_system empris 0.4
emergenices_personnel_information_system empris 2001-09-08
emergenices_personnel_information_system empris 2001-08-10