"value":"Multiple PHP remote file inclusion vulnerabilities in TalkBack 2.2.7 allow remote attackers to execute arbitrary PHP code via a URL in the (1) language_file parameter to (a) comments-display-tpl.php and (b) addons/separate-comments-mod/my-comments-display-tpl.php and the (2) config[comments_form_tpl] parameter to comments-display-tpl.php."
},
{
"lang":"es",
"value":"M\u00faltiples vulnerabilidades de inclusi\u00f3n remota de archivo en PHP, en TalkBack 2.2.7. Permite que atacantes remotos ejecuten c\u00f3digo PHP de su elecci\u00f3n a trav\u00e9s de una URL en los ficheros: comments-display-tpl.php y addons/separate-comments-mod/my-comments-display, utilizando el par\u00e1metro language_file; y en comments-display-tpl.php, utilizando el par\u00e1metro config[comments_form_tpl]"