Unrated severityNVD Advisory· Published Jan 26, 2007· Updated Apr 23, 2026
CVE-2007-0531
CVE-2007-0531
Description
PHP remote file inclusion vulnerability in includes/login.php in FreeWebShop 2.2.3 and 2.2.4 before 20070123 allows remote attackers to execute arbitrary PHP code via a URL in the lang_file parameter.
Affected products
2cpe:2.3:a:freewebshop:freewebshop:2.2.3:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:freewebshop:freewebshop:2.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:freewebshop:freewebshop:2.2.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- 14house.blogspot.com/2007/01/freewebshoporg-remote-file-inclusion.htmlnvdExploitVendor Advisory
- secunia.com/advisories/23898nvdVendor Advisory
- osvdb.org/32951nvd
- securitytracker.com/idnvd
- www.freewebshop.orgnvd
- www.vupen.com/english/advisories/2007/0319nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/31732nvd
News mentions
0No linked articles in our index yet.