MEDIUM
Drupal 5.2 and earlier does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to execute arbitrary PHP code by invoking the drupal_eval function through a callback parameter to the default URI, as demonstrated by the _menu[callbacks][1][callback] parameter
Published Oct 12, 2007
6.8
MEDIUMCVSS 2.0
EPSS 4.42%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.