CVE-2008-0300
11.03.2008, 23:44
mapFiler.php in Mapbender 2.4 to 2.4.4 allows remote attackers to execute arbitrary PHP code via PHP code sequences in the factor parameter, which are not properly handled when accessing a filename that contains those sequences.
Vendor | Product | Version |
---|---|---|
mapbender | mapbender | 2.4 |
mapbender | mapbender | 2.4.1 |
mapbender | mapbender | 2.4.2 |
mapbender | mapbender | 2.4.3 |
mapbender | mapbender | 2.4.4 |
𝑥
= Vulnerable software versions
References