Security Advisory

CVE-2007-2457

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-05-02 18:00:00
Last updated 2024-08-07 13:42:32
Assigner mitre
State PUBLISHED

Description

PHP remote file inclusion vulnerability in resources/includes/class.Smarty.php in Pixaria Gallery before 1.4.3 allows remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parameter.