Vulnerabilities (CVE)

Filtered by vendor Mambo Subscribe
Filtered by product Mambelfish Component
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-4270 1 Mambo 1 Mambelfish Component 2023-12-10 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in mambelfish.class.php in the mambelfish component (com_mambelfish) 1.1 and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.