Multiple PHP remote file inclusion vulnerabilities in JD-WordPress for Joomla! (com_jd-wp) 2.0-1.0 RC2 allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter in (1) wp-comments-post.php, (2) wp-feed.php, or (3) wp-trackback.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jd-wordpress | Joomla | 2.0.1.0_rc2 (including) | 2.0.1.0_rc2 (including) |