MEDIUM
Eval injection vulnerability in CPAINT 1.3-SP allows remote attackers to execute arbitrary ASP code via the cpaint_argument[] parameter to (1) calculator.asp or (2) cpaintfile.asp, which is directly fed into an eval statement
Published Aug 19, 2005
5.0
MEDIUMCVSS 2.0
EPSS 1.05%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.