CVE-2008-3763

Variable overwrite vulnerability in libsecure.php in Turnkey PHP Live Helper 2.0.1 and earlier, when register_globals is enabled, allows remote attackers to overwrite arbitrary variables related to the db config file.  NOTE: this can be leveraged for code injection by overwriting the language file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
VendorProductVersion
turnkeywebtoolsphp_live_helper
𝑥
≤ 2.0.1
turnkeywebtoolsphp_live_helper
2.0
turnkeywebtoolsphp_live_helper
2.0:beta_1
turnkeywebtoolsphp_live_helper
2.0:beta_2
turnkeywebtoolsphp_live_helper
2.0:beta_3
turnkeywebtoolsphp_live_helper
2.0:beta_4
turnkeywebtoolsphp_live_helper
2.0:beta_5
turnkeywebtoolsphp_live_helper
2.0:beta_6
𝑥
= Vulnerable software versions