CVE-2009-1463 Information

Description

Static code injection vulnerability in razorCMS before 0.4 allows remote attackers to inject arbitrary PHP code into any page by saving content as a .php file.

Reference

http://marc.info/?l=full-disclosure&m=123990481506680&w=2 http://marc.info/?l=full-disclosure&m=123998062108561&w=2 http://razorcms.co.uk/support/viewtopic.php?f=13&t=325 http://www.securityfocus.com/bid/34566 https://exchange.xforce.ibmcloud.com/vulnerabilities/50359

Share on: