Description
Multiple PHP remote file inclusion vulnerabilities in Moodle 1.7.1 allow remote attackers to execute arbitrary PHP code via a URL in the cmd parameter to (1) admin/utfdbmigrate.php or (2) filter.php.
Remediation
References
Related Vulnerabilities
MySQL Other Vulnerability (CVE-2004-0835)
WordPress Plugin Absolute Privacy 'abpr_authenticateUser()' Security Bypass (2.0.5)
MySQL CVE-2013-2381 Vulnerability (CVE-2013-2381)
WordPress Plugin Backup & Restore Dropbox Multiple Vulnerabilities (1.4.7.5)
CrushFTP Server URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2018-18288)