📦

swmenu_component

Vendor: mambo

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 1 Total Indexed
Avg. EPSS 0.25% Exploit Prob.
Latest CVE CVE-2007-1699 Mar 27

Security Vulnerability Index

Page 1 / 1
10.0 CVSS
CVE-2007-1699
Exploit Found

Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to ImageManager/Classes/ImageManager.php under the (1) components/ or (2) administrator/components/ directory trees.

EPSS: 0.25%