Vulnerabilities > Openengine > Openengine > 1.9.beta1

DATE CVE VULNERABILITY TITLE RISK
2008-09-30 CVE-2008-4329 Improper Input Validation vulnerability in Openengine
PHP remote file inclusion vulnerability in cms/system/openengine.php in openEngine 2.0 beta4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the oe_classpath parameter.
network
low complexity
openengine CWE-20
critical
10.0