Vulnerabilities (CVE)

Filtered by vendor Cbsms Subscribe
Filtered by product Mambo Module
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-3302 1 Cbsms 1 Mambo Module 2024-02-04 5.1 MEDIUM N/A
PHP remote file inclusion vulnerability in mod_cbsms.php in CBSMS Mambo Module 1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosC_a_path parameter. NOTE: the provenance of this information is unknown; portions of the details are obtained from third party information.
CVE-2006-3294 1 Cbsms 1 Mambo Module 2024-02-04 5.1 MEDIUM N/A
PHP remote file inclusion vulnerability in mod_cbsms_messages.php in CBSMS Mambo Module 1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.