Required CVE Record Information
Description
PHP remote file inclusion vulnerability in comment.core.inc.php in Clan Manager Pro (CMPRO) 1.11 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sitepath parameter.
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- osvdb.org: 26223 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: cmpro-comment-file-include(27059) vdb-entryx_transferred
- http://sx02.coresec.de/advisories/150.txt x_transferred
- vupen.com: ADV-2006-2195 vdb-entryx_transferred