CVE-2008-2396
21.05.2008, 13:24
PHP remote file inclusion vulnerability in index.php in Wajox Software microSSys CMS 1.5 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in an arbitrary element of the PAGES array parameter.
Vendor | Product | Version |
---|---|---|
wajox_software | mircrossys_cms | 𝑥 ≤ 1.5 |
𝑥
= Vulnerable software versions
References