CVE-2008-6132

Eval injection vulnerability in reserve.php in phpScheduleIt 1.2.10 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via the start_date parameter.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
VendorProductVersion
brickhostphpscheduleit
𝑥
≤ 1.2.10
brickhostphpscheduleit
1.0
brickhostphpscheduleit
1.0.0rc1:rc1
brickhostphpscheduleit
1.0_rc1:_rc1
brickhostphpscheduleit
1.2.0
brickhostphpscheduleit
1.2.0:beta
brickhostphpscheduleit
1.2.0:rc1
brickhostphpscheduleit
1.2.1
brickhostphpscheduleit
1.2.2
brickhostphpscheduleit
1.2.3
brickhostphpscheduleit
1.2.4
brickhostphpscheduleit
1.2.5
brickhostphpscheduleit
1.2.6
brickhostphpscheduleit
1.2.7
brickhostphpscheduleit
1.2.8
brickhostphpscheduleit
1.2.9
𝑥
= Vulnerable software versions