PHP remote file inclusion vulnerability in functions.php in Circle R Monster Top List (MTL) 1.4 allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter. NOTE: It was later reported that 1.4.2 and earlier are affected.
References
Configurations
Information
Published : 2006-04-13 03:02
Updated : 2017-10-10 18:30
NVD link : CVE-2006-1781
Mitre link : CVE-2006-1781
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
circle_r
- monster_top_list