Security Advisory

CVE-2006-3980

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-08-05 00:00:00
Last updated 2024-08-07 18:48:39
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP remote file inclusion vulnerability in administrator/components/com_mgm/help.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.