VendorsToenda Software Developmenttoendacmsstable_1.0.3
Vulnerabilities

Toenda Software Development Toendacms stable_1.0.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2006-4349
PHP remote file inclusion vulnerability in ToendaCMS 1.0.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the tcms_administer_site parameter to an unspecified script, probably index.php. NOTE: this issue has been disputed by a third party, who states that $tcms_administer_site is initialized to a constant value within index.php
Published 2006-08-24 · Modified
7.51 PoCEPSS 0.029