Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-5789


Vulnerability Score 7.5 7.5
CVE Id CVE-2008-5789
Last Modified 29 Jan 2009 02:00:15
Published 31 Dec 2008 06:30:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE



Multiple PHP remote file inclusion vulnerabilities in the Recly Interactive Feederator (com_feederator) component 1.0.5 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the (1) mosConfig_absolute_path parameter to (a) add_tmsp.php, (b) edit_tmsp.php and (c) tmsp.php in includes/tmsp/; and the (2) GLOBALS[mosConfig_absolute_path] parameter to (d) includes/tmsp/subscription.php.

Vulnerable Systems


  • Recly Interactive Feederator 1.0.5


XF - feederator-mosconfigabsolute-file-include(46438)

BID - 32194

MILW0RM - 7040

SREASON - 4827

Last Updated: 27 May 2016 10:48:56