2007-11-30 00:00:00
mitre
PUBLISHED
Multiple PHP remote file inclusion vulnerabilities in Charrays CMS 0.9.3 allow remote attackers to execute arbitrary PHP code via a URL in the ccms_library_path parameter to (1) markdown.php and (2) gallery.php in decoder/.