Vulnerabilities > Creacms

DATE CVE VULNERABILITY TITLE RISK
2008-07-25 CVE-2008-3313 Code Injection vulnerability in Creacms 1.0
Multiple PHP remote file inclusion vulnerabilities in CreaCMS 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) cfg[document_uri] parameter to _administration/edition_article/edition_article.php and the (2) cfg[base_uri_admin] parameter to _administration/fonctions/get_liste_langue.php.
network
low complexity
creacms CWE-94
7.5