PHP remote file inclusion vulnerability in Savant2/Savant2_Plugin_options.php in the MambWeather 1.8.1 and previous versions component for Mambo allows remote malicious users to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mambweather mambweather |