CVE-2010-1337
09.04.2010, 18:30
Multiple PHP remote file inclusion vulnerabilities in definitions.php in Lussumo Vanilla 1.1.10, and possibly 0.9.2 and other versions, allow remote attackers to execute arbitrary PHP code via a URL in the (1) include and (2) Configuration['LANGUAGE'] parameters.
Vendor | Product | Version |
---|---|---|
lussumo | vanilla | 𝑥 ≤ 1.1.10 |
lussumo | vanilla | 0.9.2 |
lussumo | vanilla | 1.0.1 |
lussumo | vanilla | 1.0.2 |
lussumo | vanilla | 1.0.3 |
lussumo | vanilla | 1.1 |
lussumo | vanilla | 1.1.1 |
lussumo | vanilla | 1.1.2 |
lussumo | vanilla | 1.1.3 |
lussumo | vanilla | 1.1.4 |
lussumo | vanilla | 1.1.5 |
lussumo | vanilla | 1.1.5:a |
lussumo | vanilla | 1.1.5:rc1 |
lussumo | vanilla | 1.1.6 |
lussumo | vanilla | 1.1.6:rc2 |
lussumo | vanilla | 1.1.7 |
lussumo | vanilla | 1.1.8 |
lussumo | vanilla | 1.1.9 |
𝑥
= Vulnerable software versions
References