Beveiligingsadvies

CVE-2005-4031

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2005-12-06 11:00:00
Laatst bijgewerkt 2024-08-07 23:31:48
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Eval injection vulnerability in MediaWiki 1.5.x before 1.5.3 allows remote attackers to execute arbitrary PHP code via the "user language option," which is used as part of a dynamic class name that is processed using the eval function.