Loading...
Loading...
PHP remote file inclusion vulnerability in template/simpledefault/admin/_masterlayout.php in Mundi Mail 0.8.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the top parameter. NOTE: when allow_url_fopen is disabled, directory traversal attacks are possible to include and execute arbitrary local files.
June 17, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-2095
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.