VYPR
Unrated severityNVD Advisory· Published Aug 21, 2008· Updated Apr 23, 2026

CVE-2008-3763

CVE-2008-3763

Description

Variable overwrite vulnerability in libsecure.php in Turnkey PHP Live Helper 2.0.1 and earlier, when register_globals is enabled, allows remote attackers to overwrite arbitrary variables related to the db config file. NOTE: this can be leveraged for code injection by overwriting the language file.

Affected products

8
  • cpe:2.3:a:turnkeywebtools:php_live_helper:*:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:a:turnkeywebtools:php_live_helper:*:*:*:*:*:*:*:*range: <=2.0.1
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:beta_1:*:*:*:*:*:*
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:beta_2:*:*:*:*:*:*
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:beta_3:*:*:*:*:*:*
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:beta_4:*:*:*:*:*:*
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:beta_5:*:*:*:*:*:*
    • cpe:2.3:a:turnkeywebtools:php_live_helper:2.0:beta_6:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

8

News mentions

0

No linked articles in our index yet.