RSS   Vulnerabilities for 'Remository for mambo'   RSS

2006-08-14
 
CVE-2006-4130

CWE-94
 

 
PHP remote file inclusion vulnerability in admin.remository.php in the Remository Component (com_remository) 3.25 and earlier for Mambo and Joomla!, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top