Security Advisory

CVE-2007-5994

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-11-15 22:00:00
Last updated 2024-08-07 15:47:00
Assigner mitre
State PUBLISHED

Description

PHP remote file inclusion vulnerability in check_noimage.php in Fritz Berger yet another php photo album - next generation (yappa-ng) 2.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the config[path_src_include] parameter.