Multiple vulnerabilities in Ioncube loader-wizard.php

Description

ionCube PHP Encoder makes it easy to protect PHP source code from easy observation, theft and change by compiling to bytecode. An automated Installer and Wizard (loader-wizard.php) are available to help with install, as well as manual instructions. Multiple vulnerabilities were reported in older versions of this file (version before 2.46).

Remediation

Upgrade to the latest version of Ioncube loader-wizard.php (the problem was fixed in version 2.46) or remove the file from the server.

References
Severity
Classification
Tags
  • Configuration  Directory Traversal  Information Disclosure