CVE-2007-1699: Critical severity Joomla Swmenu Component vulnerability
Multiple PHP remote file inclusion vulnerabilities in the SWmenu (comswmenupro and comswmenufree) 4.0 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfigabsolutepath parameter to ImageManager/Classes/ImageManager.php under the (1) components/ or (2) administrator/components/ directory trees.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1699?
CVE-2007-1699 has a high severity rating as it allows remote attackers to execute arbitrary PHP code.
How do I fix CVE-2007-1699?
To fix CVE-2007-1699, update to the latest version of the SWmenu component for Mambo or Joomla to mitigate the vulnerabilities.
What software is affected by CVE-2007-1699?
CVE-2007-1699 affects the SWmenu component version 4.0 for both Joomla and Mambo.
Can CVE-2007-1699 lead to data breaches?
Yes, CVE-2007-1699 can lead to data breaches as it allows attackers to execute arbitrary PHP code on vulnerable systems.
Is there a patch available for CVE-2007-1699?
Yes, there are patches available in newer versions of the SWmenu component that address the vulnerabilities in CVE-2007-1699.