HIGH
PHP remote file inclusion vulnerability in ModuleBased CMS Pre-Alpha allows remote attackers to execute arbitrary PHP code via the _SERVER parameter in (1) admin/avatar.php, (2) libs/archive.class.php, (3) libs/login.php, (4) libs/profiles.class.php, and (5) libs/profile/proccess.php
Published Sep 6, 2006
7.5
HIGHCVSS 2.0
EPSS 2.81%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.