Back

CVE-2004-2041

PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote attackers to execute arbitrary PHP code by modifying the p parameter to reference a URL on a remote web server that contains the code.

Published: May 29, 2004 Modified: Jun 16, 2026

CVSS Metrics

GitHub Security Advisory GHSA-592r-52h4-gh6f

PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.11%

Top 20% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub