RSS   Vulnerabilities for 'Eocms'   RSS

2009-12-14
 
CVE-2009-4319

CWE-94
 

 
PHP remote file inclusion vulnerability in js/bbcodepress/bbcode-form.php in eoCMS 0.9.03 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the BBCODE_path parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top