Loading...
Loading...
PHP remote file inclusion vulnerability in cross.php in YABSoft Mega File Hosting 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the url parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences.
March 19, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-0966
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.