CVE-2006-4288

PHP remote file inclusion vulnerability in admin.a6mambocredits.php in the a6mambocredits component (com_a6mambocredits) 2.0.0 and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter. NOTE: some of these details are obtained from third party information.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mambo:a6mambocredits_component:2.0.0:*:*:*:*:*:*:*

Information

Published : 2006-08-22 10:04

Updated : 2017-10-18 18:29


NVD link : CVE-2006-4288

Mitre link : CVE-2006-4288


JSON object : View

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

Advertisement

dedicated server usa

Products Affected

mambo

  • a6mambocredits_component