CVE-2007-4955: Code Injection
PHP remote file inclusion vulnerability in admin.joomlaflashfun.php in the Flash Fun! (comjoomlaflashfun) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfiglivesite parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4955?
CVE-2007-4955 is classified as a critical severity vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2007-4955?
To fix CVE-2007-4955, upgrade to a patched version of the Joomla Flash Fun component or disable the affected component.
What type of attack is associated with CVE-2007-4955?
CVE-2007-4955 is associated with remote file inclusion attacks that can lead to arbitrary code execution.
Which Joomla component is affected by CVE-2007-4955?
CVE-2007-4955 affects the Flash Fun! component version 1.0 for Joomla.
Can CVE-2007-4955 affect my website?
Yes, if your website is using the vulnerable version of the Joomla Flash Fun component, it is at risk of exploitation.