PHP remote file inclusion vulnerability in catalogshop.php in the CatalogShop component for Mambo (com_catalogshop) allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Catalogshop_component | Mambo | 1.0_beta_2 (including) | 1.0_beta_2 (including) |