CVE-2008-0138
08.01.2008, 19:46
PHP remote file inclusion vulnerability in xoopsgallery/init_basic.php in the mod_gallery module for XOOPS, when register_globals is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter.
SQL Injection
Vendor | Product | Version |
---|---|---|
xoops | xoopsgallery_module | 1.3.3_9 |
𝑥
= Vulnerable software versions