MEDIUM
Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) credits.html.php, (2) info.html.php, (3) media.divs.php, (4) media.divs.js.php, (5) purchase.html.php, or (6) support.html.php in includes/
Published Oct 11, 2007
6.8
MEDIUMCVSS 2.0
EPSS 36.54%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.