CVE-2008-2341
Avalonnet News Manager - Code Injection
Title source: ruleDescription
PHP remote file inclusion vulnerability in ch_readalso.php in News Manager 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the read_xml_include parameter.
Exploits (1)
Scores
EPSS
0.0321
EPSS Percentile
86.8%
Classification
CWE
CWE-94
Status
draft
Affected Products (1)
avalonnet/news_manager
Timeline
Published
May 19, 2008
Tracked Since
Feb 18, 2026