HIGH
PHP remote file inclusion vulnerability in Clan Manager Pro (CMPRO) 1.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the (1) rootpath and possibly (2) sitepath parameters to (a) cmpro.ext/comment.core.inc.php and (b) cmpro.intern/comment.core.inc.php
Published Feb 24, 2007
7.5
HIGHCVSS 2.0
EPSS 1.22%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.