CVE-2009-2633: Code Injection
Published Jul 28, 2009
·Updated
PHP remote file inclusion vulnerability in toolbarext.php in the VehicleManager (comvehiclemanager) component 1.0 Basic for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfigabsolutepath parameter.
Affected Software
2 affected components
Joomla joomla
Ordasoft Com Vehiclemanager=1.0
Event History
Jul 28, 2009
CVE Published
via MITRE·07:06 PM
Data Sourced
via MITRE·07:06 PM
Description
Data Sourced
07:30 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-2633?
CVE-2009-2633 is classified as a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2009-2633?
To fix CVE-2009-2633, users should update the VehicleManager component to a version that is not vulnerable.
3
What software is affected by CVE-2009-2633?
CVE-2009-2633 specifically affects VehicleManager version 1.0 for Joomla!.
4
Can CVE-2009-2633 be exploited remotely?
Yes, CVE-2009-2633 can be exploited remotely by attackers to execute arbitrary PHP code.
5
What component is related to CVE-2009-2633?
CVE-2009-2633 is related to the VehicleManager component for Joomla!.