MEDIUM
PHP remote file inclusion vulnerability in eva/index.php in EVA CMS 2.3.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the eva[caminho] parameter to index.php
Published Sep 8, 2009
6.8
MEDIUMCVSS 2.0
EPSS 1.23%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.