HIGH
Multiple PHP remote file inclusion vulnerabilities in ezContents 2.0.2 and earlier allow remote attackers to execute arbitrary PHP code from a remote web server, as demonstrated using (1) the GLOBALS[rootdp] parameter to db.php, or (2) the GLOBALS[language_home] parameter to archivednews.php, and a malicious version of lang_admin.php
Published Feb 14, 2004
7.5
HIGHCVSS 2.0
EPSS 2.38%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.