1 results (0.025 seconds)

CVSS: 7.5EPSS: 1%CPEs: 2EXPL: 2

Multiple PHP remote file inclusion vulnerabilities in the Recly!Competitions (com_competitions) component 1.0 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the (1) GLOBALS[mosConfig_absolute_path] parameter to (a) add.php and (b) competitions.php in includes/competitions/, and the (2) mosConfig_absolute_path parameter to (c) includes/settings/settings.php. Múltiples vulnerabilidades de inclusión remota de fichero PHP en el componente Recly!Competitions v1.0 (com_competitions) para Joomla! • https://www.exploit-db.com/exploits/7039 http://www.securityfocus.com/bid/32192 • CWE-94: Improper Control of Generation of Code ('Code Injection') •