CVE-2009-3331

Metadata

CVE-2009-3331
7.5
exploit-db.com, exchange.xforce.ibmcloud.com
2009-09-23
2017-09-19 07:07

Description

Multiple PHP remote file inclusion vulnerabilities in DDL CMS 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the wwwRoot parameter to (1) header.php, (2) submit.php, (3) submitted.php, and (4) autosubmitter/index.php.

Related Vulnerabilities