CVE-2020-11107
02.04.2020, 18:15
An issue was discovered in XAMPP before 7.2.29, 7.3.x before 7.3.16 , and 7.4.x before 7.4.4 on Windows. An unprivileged user can change a .exe configuration in xampp-contol.ini for all users (including admins) to enable arbitrary command execution.Enginsight
Vendor | Product | Version |
---|---|---|
apachefriends | xampp | 𝑥 < 7.2.29 |
apachefriends | xampp | 7.3.0 ≤ 𝑥 < 7.3.16 |
apachefriends | xampp | 7.4.0 ≤ 𝑥 < 7.4.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration