Release DateOct 28, 2011 |
Severitylow |
ImpactSystem Compromise: Remote code execution. |
DescriptionThis indicates a possible attempt to exploit a File Inclusion vulnerability in Mambo Email Publisher.The vulnerability may allow a remote attacker to execute arbitrary PHP code by sending a specially crafted URL. |
Affected ProductsMamboXChange Mambo eMail Publisher 1.2 |
Recommended ActionsCurrently, we are not aware of any vendor supplied patches for this issue. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2006-3980 |
Reference/shttp://www.securityfocus.com/bid/19502 (BugTraq)http://www.securityfocus.com/bid/19224 (BugTraq) http://www.securityfocus.com/bid/20018 (BugTraq) http://www.securityfocus.com/bid/20072 (BugTraq) |