9.3
CVSSv2

CVE-2007-1596

Published: 22/03/2007 Updated: 11/10/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! allow remote malicious users to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) components/com_nfn_addressbook/nfnaddressbook.php or (2) administrator/components/com_nfn_addressbook/nfnaddressbook.php.

Vulnerable Product Search on Vulmon Subscribe to Product

mambo nfn address book 0.4

joomla nfn address book 0.4

Exploits

###################################################### # # MAMBO & Joomla NFN Address Book v04 (nfnaddressbookphp) Remote File Include Vulnerabilities # ###################################################### # # script : mamboxchangecom/frs/downloadphp/8191/com_nfn_addressbookzip # ################################################### ...