CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2009-4928

HIGH
7.5
CVSS Severity Score
EPSS Score0.1120%
EPSS Percentile15.78th
Published2010年7月12日
Last Modified2026年4月29日

Vulnerability Description

PHP remote file inclusion vulnerability in config.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary PHP code via a URL in the inc_dir parameter, a different vector than CVE-2006-1922 and CVE-2006-7055.

Affected Platforms (CPE)

📦
Sweetphp

Totalcalendar

= 2.4

References & Advisories

相關漏洞威脅