CVE-2007-2199: Code Injection
PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as used in multiple products including (1) Joomla! 1.5.0 Beta, (2) N/X Web Content Management System (WCMS) 4.5, (3) CJG EXPLORER PRO 3.3, and (4) phpSiteBackup 0.1, allows remote attackers to execute arbitrary PHP code via a URL in the gpcltarlibdir parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2199?
CVE-2007-2199 has a moderate severity rating, posing a risk of remote file inclusion.
How do I fix CVE-2007-2199?
To fix CVE-2007-2199, you should upgrade the PclTar module to a version that is not affected by the vulnerability.
Which software products are affected by CVE-2007-2199?
CVE-2007-2199 affects products such as Joomla! 1.5.0 Beta, CJG EXPLORER PRO 3.3, and N/X Web Content Management System 4.5.
What type of vulnerability is CVE-2007-2199?
CVE-2007-2199 is a PHP remote file inclusion vulnerability.
Is CVE-2007-2199 still a concern for modern applications?
CVE-2007-2199 may still be a concern for outdated applications that rely on vulnerable versions of the PclTar module.