Vulnerabilities > Mambo > Mambo Gallery Manager

DATE CVE VULNERABILITY TITLE RISK
2006-08-05 CVE-2006-3981 Remote File Inclusion vulnerability in Mambo Gallery Manager
PHP remote file inclusion vulnerability in about.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
network
low complexity
mambo
7.5
2006-08-05 CVE-2006-3980 Code Injection vulnerability in Mambo Gallery Manager
PHP remote file inclusion vulnerability in administrator/components/com_mgm/help.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
network
mambo CWE-94
6.8