Security Advisory

CVE-2008-2981

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-07-02 17:00:00
Last updated 2024-08-07 09:21:34
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP remote file inclusion vulnerability in admin/templates/template_thumbnail.php in HomePH Design 2.10 RC2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the thumb_template parameter.