← Back

CVE-2008-0450

nvd nist
Published: Jan 25, 2008Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Multiple PHP remote file inclusion vulnerabilities in BLOG:CMS 4.2.1.c allow remote attackers to execute arbitrary PHP code via a URL in the (1) DIR_PLUGINS parameter to (a) index.php, and the (2) DIR_LIBS parameter to (b) media.php and (c) xmlrpc/server.php in admin/.

Affected (1)

Products: Blog Cms: Blog Cms
1 product
Blog Cms
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 4.2.1_c

References (4)

Timeline

No history available yet.