CVE-2017-1000423
02.01.2018, 20:29
b2evolution version 6.6.0 - 6.8.10 is vulnerable to input validation (backslash and single quote escape) in basic install functionality resulting in unauthenticated attacker gaining PHP code execution on the victim's setup.Enginsight
Vendor | Product | Version |
---|---|---|
b2evolution | b2evolution | 6.6.0 ≤ 𝑥 ≤ 6.8.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References