Variable extraction vulnerability in include/common.php in exV2 2.0.4.3 and earlier allows remote attackers to overwrite arbitrary program variables and conduct directory traversal attacks to execute arbitrary code by modifying the $xoopsOption['pagetype'] variable.
References
Configurations
Information
Published : 2007-03-02 13:18
Updated : 2017-10-10 18:31
NVD link : CVE-2006-7079
Mitre link : CVE-2006-7079
JSON object : View
CWE
Products Affected
exv2
- content_management_system