Security Advisory

CVE-2011-1513

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-11-04 21:00:00
Last updated 2024-08-06 22:28:41
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Static code injection vulnerability in install_.php in e107 CMS 0.7.24 and probably earlier versions, when the installation script is not removed, allows remote attackers to inject arbitrary PHP code into e107_config.php via a crafted MySQL server name.