Unrated severityNVD Advisory· Published Jan 26, 2007· Updated Jun 16, 2026
CVE-2007-0531
CVE-2007-0531
Description
PHP remote file inclusion vulnerability in includes/login.php in FreeWebShop 2.2.3 and 2.2.4 before 20070123 allows remote attackers to execute arbitrary PHP code via a URL in the lang_file parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:freewebshop:freewebshop:2.2.3:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:freewebshop:freewebshop:2.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:freewebshop:freewebshop:2.2.4:*:*:*:*:*:*:*
- (no CPE)range: >=2.2.3, <=2.2.4 (before 20070123)
Patches
Vulnerability mechanics
References
7- 14house.blogspot.com/2007/01/freewebshoporg-remote-file-inclusion.htmlnvdExploitVendor Advisory
- secunia.com/advisories/23898nvdVendor Advisory
- osvdb.org/32951nvd
- securitytracker.com/idnvd
- www.freewebshop.orgnvd
- www.vupen.com/english/advisories/2007/0319nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/31732nvd
News mentions
0No linked articles in our index yet.