Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and previous versions module for Mambo and Joomla! allow remote malicious users to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) media.tab.php or (2) media.divs.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
avant-garde solutions mosmedia |