CVE-2007-1702: Medium severity Mambo flatmenu vulnerability
Published Mar 27, 2007
·Updated
PHP remote file inclusion vulnerability in modflatmenu.php in the Flatmenu 1.07 and earlier Mambo module allows remote attackers to execute arbitrary PHP code via a URL in the mosConfigabsolutepath parameter.
Affected Software
1 affected component
Mambo flatmenu<=1.7
Event History
Mar 27, 2007
CVE Published
01:19 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1702?
CVE-2007-1702 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2007-1702?
The best way to fix CVE-2007-1702 is to update the Flatmenu module to the latest version that has addressed this vulnerability.
3
What software is affected by CVE-2007-1702?
CVE-2007-1702 affects the Flatmenu module version 1.07 and earlier for Mambo CMS.
4
Can CVE-2007-1702 be exploited remotely?
Yes, CVE-2007-1702 can be exploited remotely by attackers to execute arbitrary PHP code.
5
What is the nature of the vulnerability in CVE-2007-1702?
CVE-2007-1702 is a remote file inclusion vulnerability that allows attackers to manipulate the mosConfig_absolute_path parameter.