TROYANOSYVIRUS
Back to CVEs

CVE-2008-1989

N/A

Description

PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the e107path parameter.

CVE Details

CVSS v3.1 ScoreN/A
Published4/27/2008
Last Modified4/23/2026
Sourcenvd
Honeypot Sightings0

Affected Products

123flashchat:123_flash_chat_modulee107:e107

Weaknesses (CWE)

CWE-94

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.