CyberSec.Space Logo
CVEブラウザに戻る

CVE-2008-1989

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1780%
EPSS Percentile38.18th
Published2008年4月27日
Last Modified2026年4月23日

Vulnerability Description

PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the e107path parameter.

Affected Platforms (CPE)

📦
123flashchat

123 Flash Chat Module

= 6.8.0
📦
E107

E107

All versions

References & Advisories

関連する脆弱性情報