CVE-2017-6070
21.02.2017, 07:59
CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to execute PHP code via the cntnt01fbrp_forma_form_template parameter in admin_store_form.Enginsight
Vendor | Product | Version |
---|---|---|
cmsmadesimple | form_builder | 𝑥 ≤ 0.8.1.5 |
cmsmadesimple | cms_made_simple | 𝑥 ≤ 1.12.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration