Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6218 (CMS)

BugsAlert Home > CVE-2007-6218 (CMS)
 
 

Multiple PHP remote file inclusion vulnerabilities in Ossigeno CMS 2.2 pre1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) level parameter to (a) install_module.php and (b) uninstall_module.php in upload/xax/admin/modules/, (c) upload/xax/admin/patch/index.php, and (d) install_module.php and (e) uninstall_module.php in upload/xax/ossigeno/admin/; and the (2) ossigeno parameter to (f) ossigeno_modules/ossigeno-catalogo/xax/ossigeno/catalogo/common.php, different vect...




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6218

Learn more about CVE-2007-6218 (CMS)
 
Tags: cve-2007-6218 cms

Related Items

      Vuln: Gregarius 'ajax.php' SQL Injection Vulnerability

      Debian Security Update Fixes OpenOffice.org HSQLDB Code Execution

      Bugtraq: vBulletin 3.7.1 PL1 and lower, vBulletin 3.6.10 PL1: XSS in modcp index

      Bugtraq: CuteFlow Version 1.5.0 Multiple Remote Vulnerabilities

      Still can't send mail to some domains despite being no lon..

      AstroCam "picfile" Cross-Site Scripting Vulnerability

      CVE-2008-3118 (phpmotion)

 

Pixel