Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-6038

Overview

Vulnerability Score 6.8 6.8
CVE Id CVE-2007-6038
Last Modified 05 Sep 2008 05:32:14
Published 20 Nov 2007 06:46:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2007-6038

Summary

PHP remote file inclusion vulnerability in xajax_functions.php in the JUser (com_juser) 1.0.14 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

Vulnerable Systems

Application

  • Joomlaequipment Juser 1.0.14


References

MILW0RM - 4636

XF - joomla-juser-xajaxfunctions-file-include(38555)

BID - 26499


Last Updated: 27 May 2016 10:46:22