Vulnerabilities > Oocomments

DATE CVE VULNERABILITY TITLE RISK
2008-03-25 CVE-2008-1511 Code Injection vulnerability in Oocomments 1.0
Multiple PHP remote file inclusion vulnerabilities in ooComments 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the PathToComment parameter for (1) classes/class_admin.php and (2) classes/class_comments.php.
network
low complexity
oocomments CWE-94
7.5