RSS   Vulnerabilities for 'Encapscms'   RSS

2007-01-31
 
CVE-2007-0635

CWE-Other
 

 
Multiple PHP remote file inclusion vulnerabilities in EncapsCMS 0.3.6 allow remote attackers to execute arbitrary PHP code via a URL in the (1) config[path] parameter to (a) common_foot.php or (b) blogs.php, or (2) the config[theme] parameter to (c) admin/gallery_head.php.

 
2006-11-14
 
CVE-2006-5895

CWE-Other
 

 
PHP remote file inclusion vulnerability in core/core.php in EncapsCMS 0.3.6 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top