CVE-2007-1699

Vulnérabilités

CVE-2007-1699

Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla!

HIGH com_swmenupro Composant

Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to ImageManager/Classes/ImageManager.php under the (1) components/ or (2) administrator/components/ directory trees.

10.0 Élevée · CVSS 2.0

AV:N/AC:L/Au:N/C:C/I:C/A:C

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDHIGH 10.0 (v2.0)
Produit
com_swmenupro
Type
Composant
Corrigée dans
Non précisée
Publiée
27/03/2007
Modifiée
16/06/2026
  • swmenu_component — 4.0 – 4.0

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:27 UTC