PHP remote file inclusion vulnerability in core/videodb.class.xml.php in the VideoDB component for Mambo 0.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Videodb | Mambo | 0.1 (including) | 0.1 (including) |
Videodb | Mambo | 0.2 (including) | 0.2 (including) |
Videodb | Mambo | 0.3 (including) | 0.3 (including) |