Release DateNov 16, 2011 |
Severitylow |
ImpactCompromise of affected system |
DescriptionIt indicates a possible exploit of a File Inclusion vulnerability in the VideoDB component for Mambo, that may allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. |
Affected ProductsMamboXChange VideoDB Component 0.3en |
Recommended ActionsCurrently we are not aware of any vendor-supplied patches for this issue. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2006-3736 |
Reference/shttp://www.securityfocus.com/bid/19049 (BugTraq) |