MEDIUM
Multiple PHP remote file inclusion vulnerabilities in eArk (e-Ark) 1.0 allow remote attackers to execute arbitrary PHP code via a URL in (1) the cfg_vcard_path parameter to src/vcard_inc.php or (2) the cfg_phpmailer_path parameter to src/email_inc.php
Published Oct 4, 2007
6.8
MEDIUMCVSS 2.0
EPSS 1.34%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.