MEDIUM
PHP remote file inclusion vulnerability in skin_shop/standard/2_view_body/body_default.php in TECHNOTE 7.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the shop_this_skin_path parameter, a different vector than CVE-2008-4138
Published Feb 5, 2009
6.8
MEDIUMCVSS 2.0
EPSS 3.92%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.