CVE-2002-2249

PHP remote file inclusion vulnerability in News Evolution 2.0 allows remote attackers to execute arbitrary PHP commands via the neurl parameter to (1) backend.php, (2) screen.php, or (3) admin/modules/comment.php.

Scoring

CVSS base score
0.06
EPSS probability
1.18%
Published
2007-10-14
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs