CVE-2008-0635: Code Injection
Published Feb 6, 2008
·Updated
Unspecified vulnerability in the delivery engine in Openads 2.4.0 through 2.4.2 allows remote attackers to execute arbitrary PHP code via unknown vectors.
Affected Software
2 affected components
Openads Openads=2.4
Openads Openads=2.4.2
Remediation
Patch Available
Event History
Feb 6, 2008
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0635?
CVE-2008-0635 has been classified as a critical vulnerability due to its ability to allow remote code execution.
2
How do I fix CVE-2008-0635?
To fix CVE-2008-0635, upgrade Openads to version 2.4.3 or later, where the vulnerability has been addressed.
3
What software is affected by CVE-2008-0635?
CVE-2008-0635 affects Openads versions 2.4.0 through 2.4.2.
4
What types of attacks can exploit CVE-2008-0635?
CVE-2008-0635 can be exploited by remote attackers to execute arbitrary PHP code on the server.
5
Are there any known exploits for CVE-2008-0635?
Yes, there are known exploits for CVE-2008-0635 that leverage the vulnerability to execute malicious scripts.