Multiple PHP remote file inclusion vulnerabilities in 29o3 CMS 0.1 allow remote attackers to execute arbitrary PHP code via a URL in the LibDir parameter to (1) lib/page/pageDescriptionObject.php, and (2) layoutHeaderFuncs.php, (3) layoutManager.php, and (4) layoutParser.php in lib/layout/.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2010-05-12T16:00:00.000Z
Updated: 2024-08-07T02:17:13.078Z
Reserved: 2010-05-12T00:00:00.000Z
Link: CVE-2010-1922
No data.
Status : Modified
Published: 2010-05-12T16:07:32.280
Modified: 2026-04-29T01:13:23.040
Link: CVE-2010-1922
No data.