CVE-2007-5309: Code Injection
Published Oct 9, 2007
·Updated
PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (comwmtgallery) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfiglivesite parameter.
Affected Software
2 affected components
Joomla joomla
webmaster-tips.net Flash Image Gallery=1.0
Event History
Oct 9, 2007
CVE Published
09:17 PM
Oct 10, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5309?
CVE-2007-5309 is classified as a critical vulnerability that allows remote code execution.
2
How do I fix CVE-2007-5309?
To fix CVE-2007-5309, you should update the Joomla! installation and the Flash Image Gallery component to the latest versions.
3
Who is affected by CVE-2007-5309?
CVE-2007-5309 affects users of Joomla! with the Flash Image Gallery component version 1.0 installed.
4
What type of vulnerability is CVE-2007-5309?
CVE-2007-5309 is a remote file inclusion vulnerability.
5
What can attackers do with CVE-2007-5309?
Attackers exploiting CVE-2007-5309 can execute arbitrary PHP code on the affected server.