CVE Database
/

CVE-2008-2016

Back to search

CVE-2008-2016

Published: Apr 30, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

PHP remote file inclusion vulnerability in Chilek Content Management System (aka ChiCoMaS) 2.0.4 allows remote attackers to execute arbitrary PHP code via a URL in the lang parameter to the default URI under install/. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences.

VendorProductVersions

n/a

n/a

affected
n/a

References

20080427 bug report
mailing-list
x_refsource_BUGTRAQ
3837
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now