CVE-2008-2396
EUVD-2008-239121.05.2008, 13:24
PHP remote file inclusion vulnerability in index.php in Wajox Software microSSys CMS 1.5 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in an arbitrary element of the PAGES array parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wajox_software | mircrossys_cms | 𝑥 ≤ 1.5 |
𝑥
= Vulnerable software versions
References