Multiple PHP remote file inclusion vulnerabilities in the Jx Development Article 1.1 and earlier component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter to com_articles.php in (1) components/ or (2) classes/html/.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Article_component | Jx_development | * | 1.1 (including) |