Vulnerabilities (CVE)

Filtered by vendor Mambo Subscribe
Filtered by product Mambatstaff
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-3947 1 Mambo 1 Mambatstaff 2023-12-10 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in components/com_mambatstaff/mambatstaff.php in the Mambatstaff 3.1b and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.