CVE-2010-4918: Code Injection
Published Oct 8, 2011
·Updated
PHP remote file inclusion vulnerability in iJoomla Magazine (commagazine) component 3.0.1 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the config parameter to magazine.functions.php.
Affected Software
2 affected components
iJoomla Com Magazine=3.0.1
Joomla Joomla\!
Event History
Oct 8, 2011
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
10:55 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-4918?
CVE-2010-4918 is rated as a high severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2010-4918?
To fix CVE-2010-4918, update the iJoomla Magazine component to the latest version that addresses this vulnerability.
3
What software is affected by CVE-2010-4918?
CVE-2010-4918 specifically affects iJoomla Magazine version 3.0.1 for Joomla!.
4
Can CVE-2010-4918 be exploited remotely?
Yes, CVE-2010-4918 can be exploited remotely by attackers through crafted URLs in the config parameter.
5
What type of vulnerability is CVE-2010-4918?
CVE-2010-4918 is classified as a remote file inclusion vulnerability.