CORE IMPACT v8 - Exploits Update (Tue May 26 2009)
Mambo output Remote File Inclusion Exploit
Exploits/Remote File Inclusion/Known Vulnerabilities []
Tue May 26 2009
A remote file inclusion vulnerability is present in Mambo. /includes/Cache/Lite/Output.php doesn't sanitize the $mosConfig_absolute_path before using it in an include.
Exploits Vulnerabiltiy: CVE-2008-2905











