phpCMS 2008 sp4 allowas remote malicious users to execute arbitrary php commands via the pagesize parameter to yp/product.php.
References
Link | Resource |
---|---|
https://github.com/blindkey/cve_like/issues/4 | Exploit Third Party Advisory |
https://cwe.mitre.org/data/definitions/95.html | Technical Description |
Configurations
Information
Published : 2021-06-16 10:15
Updated : 2022-09-29 09:50
NVD link : CVE-2020-22201
Mitre link : CVE-2020-22201
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
phpcms
- phpcms