CVE-2003-1292

PHP remote file include vulnerability in Derek Ashauer ashNews 0.83 allows remote attackers to include and execute arbitrary remote files via a URL in the pathtoashnews parameter to (1) ashnews.php and (2) ashheadlines.php.

Scoring

CVSS base score
0.45
EPSS probability
11.15%
Published
2006-02-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs