HIGH
PHP remote file inclusion vulnerability in config.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary PHP code via a URL in the inc_dir parameter, a different vector than CVE-2006-1922 and CVE-2006-7055
Published Jul 9, 2010
7.5
HIGHCVSS 2.0
EPSS 1.32%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.