← Back to browse · API

CVE-2008-1511

Severity
CRITICAL
CVSS
9.8
EPSS
0.02944
Risk score
40.23
CISA KEV
No
PoC
No
Published
2008-03-25
Modified
2025-04-03
First seen
2026-08-07
Aliases
EUVD-2008-1512, GHSA-G5GJ-RFRW-QG5P
Products
n/a:n/a n/a
Sources
euvd EUVD-2008-1512

Description

Multiple PHP remote file inclusion vulnerabilities in ooComments 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the PathToComment parameter for (1) classes/class_admin.php and (2) classes/class_comments.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

References