Looking for the vulnerability index of Invicti's legacy products?
Drupal Configuration Vulnerability (CVE-2008-6171) - Vulnerability Database

Drupal Configuration Vulnerability (CVE-2008-6171)

Description

includes/bootstrap.inc in Drupal 5.x before 5.12 and 6.x before 6.6, when the server is configured for "IP-based virtual hosts," allows remote attackers to include and execute arbitrary files via the HTTP Host header.

References

Related Vulnerabilities

Severity

Critical

Classification