MEDIUM
Multiple PHP remote file inclusion vulnerabilities in JAF CMS 4.0 and 4.0 RC2 allow remote attackers to execute arbitrary PHP code via a URL in the main_dir parameter to (1) forum/main.php and (2) forum/headlines.php
Published Mar 6, 2007
6.8
MEDIUMCVSS 2.0
EPSS 5.69%
Description
Affected products
Remediation
References (6)
Change history (0)
No recorded changes yet.