CyberSec.Space Logo
Back to CVE Browser

CVE-2008-1989

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1780%
EPSS Percentile38.18th
PublishedApr 27, 2008
Last ModifiedApr 23, 2026

Vulnerability Description

PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the e107path parameter.

Affected Platforms (CPE)

πŸ“¦
123flashchat

123 Flash Chat Module

= 6.8.0
πŸ“¦
E107

E107

All versions

References & Advisories

Related Vulnerabilities