CVE-2009-4779
21.04.2010, 14:30
Multiple PHP remote file inclusion vulnerabilities in NukeHall 0.3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter to (1) blocks.php, (2) messages.php, and (3) stories.php in admin/modules/.
Vendor | Product | Version |
---|---|---|
robert_garrigos | nukehall | 𝑥 ≤ 0.3 |
robert_garrigos | nukehall | 0.2:b |
robert_garrigos | nukehall | 0.2.1:b |
robert_garrigos | nukehall | 0.3:rc1 |
𝑥
= Vulnerable software versions