CVE-2006-4270

Publication date

2006-08-21 21:00:00

Family

mitre

State

PUBLISHED

Description

PHP remote file inclusion vulnerability in mambelfish.class.php in the mambelfish component (com_mambelfish) 1.1 and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.