CVE-2008-6482
Flash Tree Gallery (com_treeg) 1.0 - Remote Code Execution via mosConfig_live_site Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6482. PoCs published by NoGe.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Flash Tree Gallery 1.0. The vulnerable parameter 'mosConfig_live_site' in 'admin.treeg.php' allows arbitrary file inclusion, leading to potential remote code execution.
Description
PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (com_treeg) component 1.0 for Joomla!, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the mosConfig_live_site parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Flash Tree Gallery 1.0. The vulnerable parameter 'mosConfig_live_site' in 'admin.treeg.php' allows arbitrary file inclusion, leading to potential remote code execution.