PHP remote file inclusion vulnerability in core/videodb.class.xml.php in the VideoDB component for Mambo 0.3 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mambo videodb 0.1 |
||
mambo videodb 0.2 |
||
mambo videodb 0.3 |