CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2007-5035

HIGH
7.5
CVSS Severity Score
EPSS Score0.0130%
EPSS Percentile2.41th
Published2007年9月24日
Last Modified2026年4月23日

Vulnerability Description

PHP remote file inclusion vulnerability in html/modules/extranet_profile/main.php in openEngine 1.9 beta1 allows remote attackers to execute arbitrary PHP code via a URL in the this_module_path parameter. NOTE: this issue is disputed by CVE because PHP encounters a fatal function-call error on a direct request for the file, before reaching the include statement

Affected Platforms (CPE)

📦
Openengine

Openengine

= 1.9_beta1
📦
Openengine

Openengine

= 1.9_beta2
📦
Openengine

Openengine

= 1.9_beta3

References & Advisories

相關漏洞威脅