CVE-2003-0395

Publication date

2003-06-10 04:00:00

Family

mitre

State

PUBLISHED

Description

Ultimate PHP Board (UPB) 1.9 allows remote attackers to execute arbitrary PHP code with UPB administrator privileges via an HTTP request containing the code in the User-Agent header, which is executed when the administrator executes admin_iplog.php.