Multiple eval injection vulnerabilities in the help function in PHPKIT 1.6.1 R2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary code on the server via unknown attack vectors involving uninitialized variables.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-11-15 23:42
Updated : 2017-07-10 18:33
NVD link : CVE-2005-3554
Mitre link : CVE-2005-3554
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
phpkit
- phpkit