First published: Fri Jun 15 2007(Updated: )
PHP remote file inclusion vulnerability in footer.php in the Horoscope 1.0 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the xoopsConfig[root_path] parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xoops Horoscope Module | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3236 is classified as a high severity vulnerability due to the potential for remote code execution.
To fix CVE-2007-3236, it is recommended to upgrade the Horoscope module for XOOPS to a version that does not contain this vulnerability.
CVE-2007-3236 affects users of the Horoscope 1.0 module for XOOPS specifically.
CVE-2007-3236 is a remote file inclusion vulnerability that allows attackers to execute arbitrary PHP code.
CVE-2007-3236 impacts the footer.php file within the Horoscope 1.0 module for XOOPS.