mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 01:04:30 +00:00
943 B
943 B
CVE-2006-3749
Description
PHP remote file inclusion vulnerability in sitemap.xml.php in Sitemap component (com_sitemap) 2.0.0 for Mambo 4.5.1 CMS, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
POC
Reference
- http://securityreason.com/securityalert/1249
- http://securityreason.com/securityalert/1249
- http://www.securityfocus.com/bid/18991
- http://www.securityfocus.com/bid/18991
- https://www.exploit-db.com/exploits/2028
- https://www.exploit-db.com/exploits/2028
Github
No PoCs found on GitHub currently.