miniCMS Multiple Remote PHP Code Injection Vulnerabilities
BID:51612
Info
miniCMS Multiple Remote PHP Code Injection Vulnerabilities
| Bugtraq ID: | 51612 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-5231 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 23 2012 12:00AM |
| Updated: | Oct 03 2012 03:40PM |
| Credit: | Or4nG.M4N |
| Vulnerable: |
miniCMS miniCMS 2.0 miniCMS miniCMS 1.0 |
| Not Vulnerable: | |
Discussion
miniCMS Multiple Remote PHP Code Injection Vulnerabilities
miniCMS is prone to multiple vulnerabilities that attackers can leverage to execute arbitrary PHP code because the application fails to adequately sanitize user-supplied input.
Successful attacks can compromise the affected application and possibly the underlying computer.
miniCMS 1.0 and 2.0 are vulnerable; other versions may also be affected.
miniCMS is prone to multiple vulnerabilities that attackers can leverage to execute arbitrary PHP code because the application fails to adequately sanitize user-supplied input.
Successful attacks can compromise the affected application and possibly the underlying computer.
miniCMS 1.0 and 2.0 are vulnerable; other versions may also be affected.